CVE-2024-50803: Redaxo

Medium severity, CVSS 5.4. EPSS: 0.5% chance of exploitation in the next 30 days.

The mediapool feature of the Redaxo Core CMS application v 5.17.1 is vulnerable to Cross Site Scripting(XSS) which allows a remote attacker to escalate privileges

Affected products

  • Redaxo Redaxo: version 5.17.1 only

Published 2024-11-19. Last modified 2026-07-05.