Description
Cross Site Scripting (XSS) vulnerability in SurveyJS Survey Creator v.1.9.132 and before, allows attackers to execute arbitrary code and obtain sensitive information via the title parameter in form.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-xgj4-2hrf-j4xg | Cross-site scripting in Survey Creator |
References
History
Tue, 17 Jun 2025 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Devsoftbaltic survey-creator
|
|
| CPEs | cpe:2.3:a:devsoftbaltic:survey-creator:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Devsoftbaltic survey Creator
|
Devsoftbaltic survey-creator
|
Tue, 17 Jun 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Devsoftbaltic
Devsoftbaltic survey Creator |
|
| CPEs | cpe:2.3:a:devsoftbaltic:survey_creator:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Devsoftbaltic
Devsoftbaltic survey Creator |
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-02T15:09:51.233Z
Reserved: 2024-03-08T00:00:00.000Z
Link: CVE-2024-28635
Updated: 2024-08-02T00:56:57.986Z
Status : Analyzed
Published: 2024-03-21T04:15:09.373
Modified: 2025-06-17T14:05:15.577
Link: CVE-2024-28635
No data.
OpenCVE Enrichment
No data.
Weaknesses
Github GHSA