Cleancoder's vulnerability footprint centers on FitNesse, a wiki-based test automation framework used in agile development environments, with observed disclosures tracking to cross-site scripting issues in the web interface. Treat this as a narrow, focused vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Cleancoder over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-39610MEDIUM Cross-site scripting vulnerability exists in FitNesse releases prior to 20241026. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the | Nov 15, 2024 | 6.1 | 19 | NO | NO |
CVE-2024-28128MEDIUM Cross-site scripting vulnerability exists in FitNesse releases prior to 20220319, which may allow a remote unauthenticated attacker to execute an arbitrary script on the web browse | Mar 18, 2024 | 6.1 | 19 | NO | NO |
CVE-2024-23604MEDIUM Cross-site scripting vulnerability exists in FitNesse all releases, which may allow a remote unauthenticated attacker to execute an arbitrary script on the web browser of the user | Mar 18, 2024 | 6.1 | 19 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Cleancoder.
Media articles that mention a CVE ID that affects a product developed by Cleancoder — matched by CVE ID, not by vendor name.