Medium severity4.7NVD Advisory· Published Mar 27, 2024· Updated Jun 17, 2026
CVE-2024-27270
CVE-2024-27270
Description
IBM WebSphere Application Server Liberty 23.0.0.3 through 24.0.0.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in a specially crafted URI. IBM X-Force ID: 284576.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: 23.0.0.3 - 24.0.0.3
23.0.0.3+ 1 more
- (no CPE)range: 23.0.0.3
- cpe:2.3:a:ibm:websphere_application_server:*:*:*:*:liberty:*:*:*range: >=23.0.0.3,<24.0.0.4
Patches
Vulnerability mechanics
References
2- exchange.xforce.ibmcloud.com/vulnerabilities/284576nvdVDB EntryVendor Advisory
- www.ibm.com/support/pages/node/7145231nvdVendor Advisory
News mentions
0No linked articles in our index yet.