Junglewise Threat Intelligence

CVE-2024-10029: Eclipse GlassFish is vulnerable to Reflected XSS attacks through its Administration Console

CVE-2024-10029 · Severity: medium · CVSS 4 · Published 2025-07-16

Technologies: org.glassfish.main.admingui:console-common (Maven). Vendors: Maven.

Executive brief

Eclipse GlassFish is vulnerable to Reflected XSS attacks through its Administration Console

Affected products

  • Maven org.glassfish.main.admingui:console-common
  • Maven org.glassfish.main.admingui:console-cluster-plugin

Related threats