An issue in CSS Exfil Protection v.1.1.0 allows a remote attacker to obtain sensitive information due to missing support for CSS Style Rules.
References
Link | Resource |
---|---|
https://github.com/mlgualtieri/CSS-Exfil-Protection/issues/41 | Exploit Issue Tracking Vendor Advisory |
https://github.com/randshell/vulnerability-research/tree/main/CVE-2024-33437 | Exploit Third Party Advisory |
https://github.com/mlgualtieri/CSS-Exfil-Protection/issues/41 | Exploit Issue Tracking Vendor Advisory |
https://github.com/randshell/vulnerability-research/tree/main/CVE-2024-33437 | Exploit Third Party Advisory |
Configurations
History
18 Jun 2025, 18:07
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/mlgualtieri/CSS-Exfil-Protection/issues/41 - Exploit, Issue Tracking, Vendor Advisory | |
References | () https://github.com/randshell/vulnerability-research/tree/main/CVE-2024-33437 - Exploit, Third Party Advisory | |
CWE | NVD-CWE-noinfo | |
First Time |
Mikegualtieri
Mikegualtieri css Exfil Protection |
|
CPE | cpe:2.3:a:mikegualtieri:css_exfil_protection:1.1.0:*:*:*:*:*:*:* |
29 Mar 2025, 00:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-200 |
21 Nov 2024, 09:16
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/mlgualtieri/CSS-Exfil-Protection/issues/41 - | |
References | () https://github.com/randshell/vulnerability-research/tree/main/CVE-2024-33437 - |
01 Aug 2024, 13:51
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
Summary |
|
01 May 2024, 13:02
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-04-30 20:15
Updated : 2025-06-18 18:07
NVD link : CVE-2024-33437
Mitre link : CVE-2024-33437
CVE.ORG link : CVE-2024-33437
JSON object : View
Products Affected
mikegualtieri
- css_exfil_protection
CWE