PT-2024-21664 · Unknown · Notes Station 3

Published

2024-09-06

·

Updated

2024-12-20

·

CVE-2024-27126

CVSS v3.1

6.3

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:N
Name of the Vulnerable Software and Affected Versions Notes Station 3 versions prior to 3.9.6
Description A cross-site scripting (XSS) vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network.
Recommendations For Notes Station 3 versions prior to 3.9.6, update to version 3.9.6 or later to resolve the issue.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2024-27126

Affected Products

Notes Station 3