Cross Site Scripting (XSS) vulnerability in Advanced REST Client v.17.0.9 allows a remote attacker to execute arbitrary code and obtain sensitive information via a crafted script to the edit details parameter of the New Project function.
Metrics
Affected Vendors & Products
References
History
Thu, 26 Feb 2026 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Advanced-rest-client
Advanced-rest-client arc-electron |
|
| CPEs | cpe:2.3:a:advanced-rest-client:arc-electron:17.0.9:*:*:*:*:*:*:* | |
| Vendors & Products |
Advanced-rest-client
Advanced-rest-client arc-electron |
|
| Metrics |
ssvc
|
Mon, 19 Aug 2024 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published: 2024-04-04T00:00:00.000Z
Updated: 2024-08-19T19:18:29.854Z
Reserved: 2024-02-07T00:00:00.000Z
Link: CVE-2024-25503
Updated: 2024-08-01T23:44:09.356Z
Status : Awaiting Analysis
Published: 2024-04-04T08:15:06.747
Modified: 2024-11-21T09:00:52.333
Link: CVE-2024-25503
No data.