CVE-2024-31839
50Vexday Risk Score
Patch now. It exploitation observed by VulnCheck and has a working public exploit.
ssvc Actcvss 4.8epss 8.1%
from disclosure to weapon0 days
Published on NVDApr 12
metasploitApr 10
VulnCheck+418d
exploitation probability
8.1%top 6% of all CVEs
observed exploitation
yesVulnCheck
Cross Site Scripting vulnerability in tiagorlampert CHAOS v.5.0.1 allows a remote attacker to escalate privileges via the sendCommandHandler function in the handler.go component.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N
Affected products
n/a · n/a