Back to search
CVE-2024-22048
Published: Jan 4, 2024
Modified: Nov 29, 2025
PUBLISHED
Description
govuk_tech_docs versions from 2.0.2 to before 3.3.1 are vulnerable to a cross-site scripting vulnerability. Malicious JavaScript may be executed in the user's browser if a malicious search result is displayed on the search page.
| Vendor | Product | Versions |
|---|---|---|
Unknown | govuk_tech_docs | affected 2.0.2 - < 3.3.1 |
Weaknesses (CWE)
References
https://github.com/advisories/GHSA-x2xw-hw8g-6773
third-party-advisory
https://vulncheck.com/advisories/vc-advisory-GHSA-x2xw-hw8g-6773
third-party-advisory
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now