Beveiligingsadvies

CVE-2024-10086

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-10-30 21:21:46
Laatst bijgewerkt 2025-01-10 13:06:42
Toegewezen door HashiCorp
CVSS-score 6.1
Status PUBLISHED

Beschrijving

A vulnerability was identified in Consul and Consul Enterprise such that the server response did not explicitly set a Content-Type HTTP header, allowing user-provided inputs to be misinterpreted and lead to reflected XSS.