First published: Mon Oct 28 2024(Updated: )
In JetBrains YouTrack before 2024.3.47707 stored XSS was possible due to improper HTML sanitization in markdown elements
Credit: cve@jetbrains.com
Affected Software | Affected Version | How to fix |
---|---|---|
JetBrains YouTrack | <2024.3.47707 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-50582 is considered a medium-severity vulnerability due to its potential for stored XSS attacks.
To fix CVE-2024-50582, upgrade JetBrains YouTrack to version 2024.3.47707 or later.
CVE-2024-50582 is classified as a stored cross-site scripting (XSS) vulnerability.
CVE-2024-50582 affects all JetBrains YouTrack versions prior to 2024.3.47707.
The impact of CVE-2024-50582 allows attackers to execute malicious scripts in the context of a user's session.