CVE-2024-10086

CVSS V2 None CVSS V3 None
Description
A vulnerability was identified in Consul and Consul Enterprise such that the server response did not explicitly set a Content-Type HTTP header, allowing user-provided inputs to be misinterpreted and lead to reflected XSS.
Overview
  • CVE ID
  • CVE-2024-10086
  • Assigner
  • HashiCorp
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-10-30T21:21:46.559Z
  • Last Modified Date
  • 2024-10-30T21:21:46.559Z
History
Created Old Value New Value Data Type Notes
2024-10-31 13:18:38 Added to TrackCVE