CVE Database
/

CVE-2024-47817

Back to search

CVE-2024-47817

Published: Oct 7, 2024

Modified: Oct 8, 2024

PUBLISHED

Description

Lara-zeus Dynamic Dashboard simple way to manage widgets for your website landing page, and filament dashboard and Lara-zeus artemis is a collection of themes for the lara-zeus ecosystem. If values passed to a paragraph widget are not valid and contain a specific set of characters, applications are vulnerable to XSS attack against a user who opens a page on which a paragraph widget is rendered. Users are advised to upgrade to the appropriate fix versions detailed in the advisory metadata. There are no known workarounds for this vulnerability.

VendorProductVersions

lara-zeus

dynamic-dashboard

affected
lara-zeus/dynamic-dashboard: >= 3.0.0, < 3.0.2
affected
lara-zeus/artemis: >= 1.0.0, < 1.0.7

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now