Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-67501
HistoryAug 31, 2021 - 12:00 a.m.

Mezzanine Cross-Site Scripting Vulnerability (CNVD-2021-67501)

2021-08-3100:00:00
China National Vulnerability Database
www.cnvd.org.cn
13

0.001 Low

EPSS

Percentile

46.4%

Github Mezzanine, a content management platform, is vulnerable to a cross-site scripting vulnerability that originates from a cross-site scripting (XSS) vulnerability in Mezzanine v4.3.1. The vulnerability can be exploited to execute arbitrary code via the “Description” field of “admin/blog/blogpost/add/”.

CPENameOperatorVersion
mezzanine mezzanineeq4.3.1

0.001 Low

EPSS

Percentile

46.4%