diff --git a/advisories/unreviewed/2024/07/GHSA-jch8-q42m-ghhr/GHSA-jch8-q42m-ghhr.json b/advisories/unreviewed/2024/07/GHSA-jch8-q42m-ghhr/GHSA-jch8-q42m-ghhr.json new file mode 100644 index 00000000000..196890d43d1 --- /dev/null +++ b/advisories/unreviewed/2024/07/GHSA-jch8-q42m-ghhr/GHSA-jch8-q42m-ghhr.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jch8-q42m-ghhr", + "modified": "2024-07-23T00:31:46Z", + "published": "2024-07-23T00:31:46Z", + "aliases": [ + "CVE-2024-24507" + ], + "details": "Cross Site Scripting vulnerability in Act-On 2023 allows a remote attacker to execute arbitrary code via the newUser parameter in the login.jsp component.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-24507" + }, + { + "type": "WEB", + "url": "https://gist.github.com/Xandsz/2b409acb81e846fc3478600f984785a1" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-07-22T22:15:02Z" + } +} \ No newline at end of file