Junglewise Threat Intelligence

CVE-2024-53257: GO-2024-3306 - Vitess allows HTML injection in /debug/querylogz and /debug/env in vitess.io/vitess

CVE-2024-53257 · Severity: low · CVSS 3.1 · Published 2024-12-12

Technologies: vitess.io/vitess (Go). Vendors: Go.

Executive brief

Vitess allows HTML injection in /debug/querylogz and /debug/env in vitess.io/vitess

Affected products

  • Go vitess.io/vitess

Related threats