Security Vulnerability in NuGet Gallery Could Lead to Browser Execution of Arbitrary Code
CVE-2024-47604
6.1MEDIUM
What is CVE-2024-47604?
NuGet Gallery is a package repository that powers nuget.org. The NuGetGallery has a security vulnerability in its handling of HTML element attributes, which allows an attacker to execute arbitrary HTML or Javascript code in a victim's browser.
Affected Version(s)
NuGetGallery > 2024.06.21, <= 2024.09.25
