First published: Mon Oct 28 2024(Updated: )
In JetBrains YouTrack before 2024.3.47707 improper HTML sanitization could lead to XSS attack via comment tag
Credit: cve@jetbrains.com
Affected Software | Affected Version | How to fix |
---|---|---|
JetBrains YouTrack | <2024.3.47707 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-50581 has been classified as a medium severity vulnerability due to its potential for exploitation through XSS attacks.
To fix CVE-2024-50581, upgrade your JetBrains YouTrack installation to version 2024.3.47707 or later.
CVE-2024-50581 is an improper HTML sanitization vulnerability that can lead to cross-site scripting (XSS) attacks.
CVE-2024-50581 affects JetBrains YouTrack versions prior to 2024.3.47707.
Yes, CVE-2024-50581 can be exploited by users who can submit comments to the affected system, allowing for the execution of malicious scripts.