CVE-2024-12021 - CVE House
Back to Database
Status published High CVE-2024-12021

Stored Cross-Site Scripting

Vulnerability Description

Coverity versions prior to 2024.9.0 are vulnerable to stored cross-site scripting (XSS) in various administrative interfaces. The impact of exploitation may result in the compromise of local accounts managed by the Coverity platform as well as other standard impacts resulting from cross-site scripting.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-12021

Credits & Attribution

The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:

  • Jozef Frantisek Stefanovic

Affected Vendor

Affected Software

Coverity
Vulnerable Versions:
0

Timeline

Official Publish: March 31st, 2025
Last Modified: March 31st, 2025
Added to House: July 22nd, 2026

CVSS Vectors

Weaknesses (CWE)