Description
Hoppscotch is an API development ecosystem. Due to lack of validation for fields like Label (Edit Team) - TeamName, bad actors can send emails with Spoofed Content as Hoppscotch. Part of payload (external link) is presented in clickable form - easier to achieve own goals by malicious actors. This issue is fixed in 2023.12.6.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-24348 | Hoppscotch is an API development ecosystem. Due to lack of validation for fields like Label (Edit Team) - TeamName, bad actors can send emails with Spoofed Content as Hoppscotch. Part of payload (external link) is presented in clickable form - easier to achieve own goals by malicious actors. This issue is fixed in 2023.12.6. |
References
History
Tue, 01 Apr 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hoppscotch
Hoppscotch hoppscotch |
|
| CPEs | cpe:2.3:a:hoppscotch:hoppscotch:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Hoppscotch
Hoppscotch hoppscotch |
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-02T00:27:57.835Z
Reserved: 2024-02-19T14:43:05.993Z
Link: CVE-2024-27092
Updated: 2024-08-02T00:27:57.835Z
Status : Analyzed
Published: 2024-02-29T01:44:19.610
Modified: 2025-04-01T15:22:06.423
Link: CVE-2024-27092
No data.
OpenCVE Enrichment
No data.
EUVD