CVE-2024-6585
概要

Multiple stored cross-site scripting (“XSS”) vulnerabilities in the markdown dashboard and dashboard comment functionality of Lightdash version 0.1024.6 allows remote authenticated threat actors to inject malicious scripts into vulnerable web pages. A threat actor could potentially exploit this vulnerability to store malicious JavaScript which executes in the context of a user’s session with the application.

公表日 2024年8月31日8:15
登録日 2024年8月31日12:00
最終更新日 2024年9月4日0:35
関連情報、対策とツール
共通脆弱性一覧