CVE-2024-33437

An issue in CSS Exfil Protection v.1.1.0 allows a remote attacker to obtain sensitive information due to missing support for CSS Style Rules.
Configurations

Configuration 1 (hide)

cpe:2.3:a:mikegualtieri:css_exfil_protection:1.1.0:*:*:*:*:*:*:*

History

18 Jun 2025, 18:07

Type Values Removed Values Added
References () https://github.com/mlgualtieri/CSS-Exfil-Protection/issues/41 - () https://github.com/mlgualtieri/CSS-Exfil-Protection/issues/41 - Exploit, Issue Tracking, Vendor Advisory
References () https://github.com/randshell/vulnerability-research/tree/main/CVE-2024-33437 - () https://github.com/randshell/vulnerability-research/tree/main/CVE-2024-33437 - Exploit, Third Party Advisory
CWE NVD-CWE-noinfo
First Time Mikegualtieri
Mikegualtieri css Exfil Protection
CPE cpe:2.3:a:mikegualtieri:css_exfil_protection:1.1.0:*:*:*:*:*:*:*

29 Mar 2025, 00:15

Type Values Removed Values Added
CWE CWE-200

21 Nov 2024, 09:16

Type Values Removed Values Added
References () https://github.com/mlgualtieri/CSS-Exfil-Protection/issues/41 - () https://github.com/mlgualtieri/CSS-Exfil-Protection/issues/41 -
References () https://github.com/randshell/vulnerability-research/tree/main/CVE-2024-33437 - () https://github.com/randshell/vulnerability-research/tree/main/CVE-2024-33437 -

01 Aug 2024, 13:51

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
Summary
  • (es) Un problema en CSS Exfil Protection v.1.1.0 permite a un atacante remoto obtener información confidencial debido a la falta de soporte para las reglas de estilo CSS.

01 May 2024, 13:02

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-30 20:15

Updated : 2025-06-18 18:07


NVD link : CVE-2024-33437

Mitre link : CVE-2024-33437

CVE.ORG link : CVE-2024-33437


JSON object : View

Products Affected

mikegualtieri

  • css_exfil_protection
CWE
NVD-CWE-noinfo CWE-200

Exposure of Sensitive Information to an Unauthorized Actor