CVE-2024-29384

An issue in CSS Exfil Protection v.1.1.0 allows a remote attacker to obtain sensitive information via the content.js and parseCSSRules functions.
Configurations

Configuration 1 (hide)

cpe:2.3:a:mikegualtieri:css_exfil_protection:1.1.0:*:*:*:*:*:*:*

History

18 Jun 2025, 18:08

Type Values Removed Values Added
CPE cpe:2.3:a:mikegualtieri:css_exfil_protection:1.1.0:*:*:*:*:*:*:*
First Time Mikegualtieri
Mikegualtieri css Exfil Protection
CWE NVD-CWE-noinfo
References () https://github.com/mlgualtieri/CSS-Exfil-Protection/issues/41 - () https://github.com/mlgualtieri/CSS-Exfil-Protection/issues/41 - Exploit, Issue Tracking, Vendor Advisory
References () https://github.com/randshell/vulnerability-research/tree/main/CVE-2024-29384 - () https://github.com/randshell/vulnerability-research/tree/main/CVE-2024-29384 - Exploit, Third Party Advisory

Information

Published : 2024-04-30 20:15

Updated : 2025-06-18 18:08


NVD link : CVE-2024-29384

Mitre link : CVE-2024-29384

CVE.ORG link : CVE-2024-29384


JSON object : View

Products Affected

mikegualtieri

  • css_exfil_protection
CWE
NVD-CWE-noinfo CWE-200

Exposure of Sensitive Information to an Unauthorized Actor