CVE-2024-34243

Konga v0.14.9 is vulnerable to Cross Site Scripting (XSS) via the username parameter.
Configurations

Configuration 1 (hide)

cpe:2.3:a:pantsel:konga:0.14.9:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-05-14 16:17

Updated : 2025-06-13 13:12


NVD link : CVE-2024-34243

Mitre link : CVE-2024-34243

CVE.ORG link : CVE-2024-34243


JSON object : View

Products Affected

pantsel

  • konga
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')