
⚡ CVE-2024-0590: Microsoft Clarity <= 0.9.3 - Cros... CSRF bypass on Microsoft Clarity's project ID function chains to stored XSS - perfect social engineering target for Word... https://zerodaysignal.com/vulnerability/CVE-2024-0590 #netsec #vulnerability #CVE #sysadmin #zeroday
Post summary
CVE‑2024‑0590 reveals a CSRF bypass in Microsoft Clarity that leads to stored XSS, making it a potential social engineering vector; no PoC, exploit, patch, or active exploitation evidence is provided.
