CVE-2024-34481

drupal-wiki.com Drupal Wiki before 8.31.1 allows XSS via comments, captions, and image titles of a Wiki page.
Configurations

Configuration 1 (hide)

cpe:2.3:a:kontextwork:drupal_wiki:*:*:*:*:*:*:*:*

History

04 Nov 2025, 18:16

Type Values Removed Values Added
References
  • () http://seclists.org/fulldisclosure/2024/May/4 -

Information

Published : 2024-07-05 02:15

Updated : 2025-11-04 18:16


NVD link : CVE-2024-34481

Mitre link : CVE-2024-34481

CVE.ORG link : CVE-2024-34481


JSON object : View

Products Affected

kontextwork

  • drupal_wiki
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')