Medium severity5.8NVD Advisory· Published Mar 18, 2024· Updated Apr 15, 2026
CVE-2024-28039
CVE-2024-28039
Description
Improper restriction of XML external entity references vulnerability exists in FitNesse all releases, which allows a remote unauthenticated attacker to obtain sensitive information, alter data, or cause a denial-of-service (DoS) condition.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.