Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2024-11623

Authentik project is vulnerable to Stored XSS attacks through uploading crafted SVG files that are used as application icons.  This action could only be performed by an authenticated admin user. The issue was fixed in 2024.10.4 release.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 22.3%
CVSS Severity
CVSS v3 Score 4.8
Products affected by CVE-2024-11623


Contact Us

Shodan ® - All rights reserved