CVE-2023-46948: Temenos t24

Medium severity, CVSS 5.4. EPSS: 0.4% chance of exploitation in the next 30 days.

A reflected Cross-Site Scripting (XSS) vulnerability was found on Temenos T24 Browser R19.40 that enables a remote attacker to execute arbitrary JavaScript code via the skin parameter in the about.jsp and genrequest.jsp components.

Affected products

Published 2024-09-23. Last modified 2026-07-05.