CVE-2026-24710

Northern.tech CFEngine Enterprise before 3.21.8, 3.24.3, and 3.27.0 allows XSS.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:northern.tech:cfengine:*:*:*:*:enterprise:*:*:*
cpe:2.3:a:northern.tech:cfengine:*:*:*:*:enterprise:*:*:*
cpe:2.3:a:northern.tech:cfengine:3.26.0:*:*:*:enterprise:*:*:*

History

No history.

Information

Published : 2026-05-14 15:16

Updated : 2026-06-17 10:23


NVD link : CVE-2026-24710

Mitre link : CVE-2026-24710

CVE.ORG link : CVE-2026-24710


JSON object : View

Products Affected

northern.tech

  • cfengine
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')