CVE-2024-24594

CVSS V2 None CVSS V3 None
Description
A cross-site scripting (XSS) vulnerability in all versions of the web server component of Allegro AI’s ClearML platform allows a remote attacker to execute a JavaScript payload when a user views the Debug Samples tab in the web UI.
Overview
  • CVE ID
  • CVE-2024-24594
  • Assigner
  • HiddenLayer
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-02-06T14:42:08.052Z
  • Last Modified Date
  • 2024-02-13T20:02:10.383Z
History
Created Old Value New Value Data Type Notes
2024-06-26 04:22:15 Added to TrackCVE