CVE-2024-32711 — Cross-site Scripting in Iqbal Mycred
Severity
—N/A
No vectorEPSS
0.2%
top 63.58%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 24
Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Saad Iqbal myCred mycred.This issue affects myCred: from n/a through <= 2.6.3.
Affected Packages1 packages
🔴Vulnerability Details
3GHSA▶
GHSA-8hv5-c5c3-jqvg: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in myCred allows Stored XSS↗2024-04-24