AI Score
Confidence
High
EPSS
Percentile
40.2%
In Redmine before 3.2.6 and 3.3.x before 3.3.3, stored XSS is possible by using an SVG document as an attachment.
www.debian.org/security/2018/dsa-4191
www.redmine.org/issues/24199
www.redmine.org/projects/redmine/wiki/Security_Advisories