vulnti.work

Cross Site Scripting vulnerability in Lavalite CMS v.10.1.0 allows attackers to execute arbitrary code and obtain sensitive information via a crafted payload to the URL.

Medium CVSS 6.1
CVECVE-2024-31828
First seen2026-08-24 16:30 UTC
Disclosed2024-04-26 22:15 UTC
Last updated2026-08-24 16:30 UTC
Channel statusauto

Summary

Cross Site Scripting vulnerability in Lavalite CMS v.10.1.0 allows attackers to execute arbitrary code and obtain sensitive information via a crafted payload to the URL.

In-depth triage

No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).

Affected products

  • :

Sources

  • NVD DATABASE

Original Links

Timeline

  1. nvd_ingest NVD