Description

DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. Prior to versions 9.13.10 and 10.2.0, module title supports richtext which could include scripts that would execute in certain scenarios. Versions 9.13.10 and 10.2.0 contain a fix for the issue.

INFO

Published Date :

2026-01-27T23:58:33.340Z

Last Modified :

2026-01-28T15:03:27.676Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2026-24838 vulnerability.

Vendors Products
Dnnsoftware
  • Dnn Platform
  • Dotnetnuke
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2026-24838.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact