CRAC Learning - Tech@cracbotDisclosure
The post announces CVE-2026-24838, noting its critical CVSS score and that it is under analysis, but it does not provide any PoC, exploit code, or patch information.
PulsePatch.io@pulsepatchioPatch
The post announces a stored XSS flaw (CVE-2026-24838) in DotNetNuke Core and recommends updating to version 9.13.10 to remediate the issue.
cvereports@_cvereportsDisclosure
The post describes a critical stored XSS flaw in DNN’s title rendering but offers no PoC, exploit code, evidence of active use, or mitigation guidance.
PulsePatch.io@pulsepatchioDisclosure
The post announces a stored XSS flaw (CVE‑2026‑24838) in DotNetNuke that allows malicious scripts in module titles and advises users to apply an update.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The text announces CVE‑2026‑24838, a Cross‑Site Scripting vulnerability in DNN CMS module titles affecting versions prior to 9.13.10 and 10.2.0. No Proof of Concept, exploit code, active exploitation claim, or patch information is provided.
CVE@CVEnewGeneral
The text references CVE‑2026‑24838 affecting DNN/CMS, indicating vulnerability in versions prior to 9.13.10 and 10.2.0, but offers no exploit details, patch information, or technical specifics.