CVE-2024-54133 | Action Pack up to 7.0.8.6/7.1.5.0/7.2.2.0/8.0.0.0 content_security_policy cross site scripting (GHSA-vfm5-rmrh-j26v / Nessus ID 232151)
A vulnerability was found in Action Pack up to 7.0.8.6/7.1.5.0/7.2.2.0/8.0.0.0. It has been classified as problematic. Affected is the function content_security_policy. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2024-54133. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.