Lucene search

K
cvelistMitreCVELIST:CVE-2021-43446
HistoryJan 23, 2023 - 12:00 a.m.

CVE-2021-43446

2023-01-2300:00:00
mitre
www.cve.org
onlyoffice
cross site scripting
xss
macros feature

EPSS

0.001

Percentile

34.5%

ONLYOFFICE all versions as of 2021-11-08 is vulnerable to Cross Site Scripting (XSS). The β€œmacros” feature of the document editor allows malicious cross site scripting payloads to be used.

EPSS

0.001

Percentile

34.5%

Related for CVELIST:CVE-2021-43446