Junglewise Threat Intelligence

CVE-2024-39126: PYSEC-2024-65 - Roundup before 2.4.0 allows XSS via JavaScript in PDF, XML, and SVG documents.

CVE-2024-39126 · Severity: low · CVSS 3.1 · Published 2024-07-17

Technologies: roundup (PyPI). Vendors: PyPI.

Executive brief

Roundup before 2.4.0 allows XSS via JavaScript in PDF, XML, and SVG documents.

Affected products

  • PyPI roundup

Related threats