CVE-2024-9283
CVSS 3.1 Score 3.3 of 10 (low)
Details
Published Sep 27, 2024
Updated: Sep 30, 2024
CWE ID 79
Summary
CVE-2024-9283 is a newly disclosed vulnerability affecting RelaxedJS ReLaXed up to version 0.2.2. The issue lies within an unknown function of the Pug to PDF Converter component, which can be exploited through cross-site scripting (XSS). An attacker must gain local access to initiate the exploit, which has been made public, potentially putting users at risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.