Description
Cross-site scripting (XSS) vulnerability in RenderTune v1.1.4 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Upload Title parameter.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Fri, 28 Mar 2025 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 21 Jan 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Martinbarker
Martinbarker rendertune |
|
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:a:martinbarker:rendertune:1.1.4:*:*:*:*:*:*:* | |
| Vendors & Products |
Martinbarker
Martinbarker rendertune |
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-03-27T14:36:54.685Z
Reserved: 2024-02-07T00:00:00.000Z
Link: CVE-2024-25292
Updated: 2024-08-01T23:44:08.325Z
Status : Modified
Published: 2024-02-29T07:15:07.513
Modified: 2025-03-27T15:15:50.407
Link: CVE-2024-25292
No data.
OpenCVE Enrichment
No data.
Weaknesses