Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2024-1146

Cross-Site Scripting vulnerability in Devklan's Alma Blog that affects versions 2.1.10 and earlier. This vulnerability could allow an attacker to store a malicious JavaScript payload within the application by adding the payload to 'Community Description' or 'Community Rules'.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 23.3%
CVSS Severity
CVSS v3 Score 5.8
Products affected by CVE-2024-1146
  • Alma » Alma Blog » Version: 2.1.10
    cpe:2.3:a:alma:alma_blog:2.1.10


Contact Us

Shodan ® - All rights reserved