CVE Vulnerabilities

CVE-2024-27257

Inclusion of Sensitive Information in Source Code

Published: Sep 10, 2024 | Modified: Sep 16, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

IBM OpenPages 8.3 and 9.0 potentially exposes information about client-side source code through use of JavaScript source maps to unauthorized users.

Weakness

Source code on a web server or repository often contains sensitive information and should generally not be accessible to users.

Affected Software

NameVendorStart VersionEnd Version
Openpages_grc_platformIbm8.3 (including)8.3.0.2 (excluding)
Openpages_with_watsonIbm9.0 (including)9.0.0.3 (excluding)

Potential Mitigations

References