Kion · Kion Exchange Programs · CVE-2024-7130
**Name of the Vulnerable Software and Affected Versions**
KION Exchange Programs Software versions prior to 1.21.9092.29966
**Description**
The issue is related to Improper Neutralization of Input During Web Page Generation, also known as Cross-site Scripting (XSS). This allows for Reflected XSS attacks.
**Recommendations**
For versions prior to 1.21.9092.29966, update to version 1.21.9092.29966 or later to resolve the issue. As a temporary workaround, consider restricting user input to minimize the risk of exploitation.