VYPR
Low severityNVD Advisory· Published Jan 27, 2025· Updated Feb 19, 2025

CVE-2024-55227

CVE-2024-55227

Description

A cross-site scripting (XSS) vulnerability in the Events/Agenda module of Dolibarr v21.0.0-beta allows attackers to execute arbitrary web scripts or HTMl via a crafted payload injected into the Title parameter.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Dolibarr v21.0.0-beta Events/Agenda module has a stored XSS via the Title parameter.

The Events/Agenda module in Dolibarr v21.0.0-beta contains a cross-site scripting (XSS) vulnerability. An attacker can inject arbitrary web scripts or HTML into the Title parameter, which is then stored and rendered without proper sanitization [1].

AI Insight generated on May 20, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

4

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

7

News mentions

0

No linked articles in our index yet.