High severity7.6OSV Advisory· Published Jan 28, 2026· Updated Jun 17, 2026
CVE-2026-24833
CVE-2026-24833
Description
DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. Prior to versions 9.13.10 and 10.2.0, a module could install with richtext in its description field which could contain scripts that will run for user in the Persona Bar. Versions 9.13.10 and 10.2.0 contain a fix for the issue.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: v10.0.0, v10.0.1, v10.1.0, …
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.