CVE-2024-9427

A vulnerability in Koji was found. An unsanitized input allows for an XSS attack. Javascript code from a malicious link could be reflected in the resulting web page. It is not expected to be able to submit an action or make a change in Koji due to existing XSS protections in the code
Configurations

No configuration.

History

07 Feb 2025, 05:15

Type Values Removed Values Added
Summary
  • (es) Se encontró una vulnerabilidad en Koji. Una entrada no desinfectada permite un ataque XSS. El código Javascript de un enlace malicioso podría reflejarse en la página web resultante. No se espera poder enviar una acción o realizar un cambio en Koji debido a las protecciones XSS existentes en el código.
References
  • () https://access.redhat.com/security/cve/CVE-2024-9427 -

24 Dec 2024, 04:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-24 04:15

Updated : 2025-02-07 05:15


NVD link : CVE-2024-9427

Mitre link : CVE-2024-9427

CVE.ORG link : CVE-2024-9427


JSON object : View

Products Affected

No product.

CWE
CWE-116

Improper Encoding or Escaping of Output