DOM-based HTML Injection Vulnerability in Darktrace Threat Visualizer 6.1.27 and Earlier

DOM-based HTML Injection Vulnerability in Darktrace Threat Visualizer 6.1.27 and Earlier

CVE-2024-22854 · Severity

DOM-based HTML injection vulnerability in the main page of Darktrace Threat Visualizer version 6.1.27 (bundle version 61050) and before has been identified. A URL, crafted by a remote attacker and visited by an authenticated user, allows open redirect and potential credential stealing using an injected HTML form.

Learn more about our User Device Pen Test.