CVE-2024-27257
MEDIUMDescription
IBM OpenPages 8.3 and 9.0 potentially exposes information about client-side source code through use of JavaScript source maps to unauthorized users.
Is your site exposed to CVE-2024-27257?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| ibm | openpages_grc_platform |
| ibm | openpages_with_watson |
References
Frequently Asked Questions
What is CVE-2024-27257? +
How severe is CVE-2024-27257? +
What products are affected by CVE-2024-27257? +
How do I check if I'm vulnerable to CVE-2024-27257? +
Related Vulnerabilities
PMD is an extensible multilanguage static code analyzer. The passphrase for the PMD and PMD Designer release signing keys are …
A inclusion of sensitive information in source code vulnerability in Fortinet FortiMonitorOnSight 7.2.4 through 7.2.7, FortiMonitorOnSight 7.2.0 through 7.2.2 may …
An issue in Loggrove v.1.0 allows a remote attacker to obtain sensitive information via the read.py component.
Algernon is a small self-contained pure-Go web server. Prior to 1.17.7, when Algernon is invoked with a single file path …
API key is hardcoded and retrievable from the application package. Since Android applications can be reverse engineered, embedding sensitive API …
Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, contains an Inclusion of Sensitive Information in Source Code …