VYPR

Ui Server

by Temporalio

Source repositories

CVEs (1)

  • CVE-2024-2435MedApr 2, 2024
    risk 0.21cvss 4.3epss 0.00

    For an attacker with pre-existing access to send a signal to a workflow, the attacker can make the signal name a script that executes when a victim views that signal. The XSS is in the timeline page displaying the workflow execution details of the workflow that was sent the…