CVE-2024-39610: Cleancoder Fitnesse
Medium severity, CVSS 6.1. EPSS: 0.4% chance of exploitation in the next 30 days.
Cross-site scripting vulnerability exists in FitNesse releases prior to 20241026. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who is using the product.
Affected products
- Cleancoder Fitnesse: before 20241026 (fixed in 20241026)
Published 2024-11-15. Last modified 2026-06-17.