Cross-Site Scripting Vulnerability in Octopus Server
CVE-2024-4456
4.1MEDIUM
What is CVE-2024-4456?
In affected versions of Octopus Server with certain access levels it was possible to embed a Cross-Site Scripting payload on the audit page.
Affected Version(s)
Octopus Server Windows 3.0 < 2023.3.13361
Octopus Server Windows 2023.4.296 < 2023.4.8338
Octopus Server Windows 2024.1.437 < 2024.1.11127