CVE-2024-32405: Inducer Relate

Low severity, CVSS 2.6. EPSS: 0.5% chance of exploitation in the next 30 days.

Cross Site Scripting vulnerability in inducer relate before v.2024.1 allows a remote attacker to escalate privileges via a crafted payload to the Answer field of InlineMultiQuestion parameter on Exam function.

Affected products

  • Inducer Relate: before 2024.1 (fixed in 2024.1)

Published 2024-04-22. Last modified 2026-06-17.