Lucene search

K
osvGoogleOSV:CVE-2020-19002
HistoryAug 27, 2021 - 7:15 p.m.

CVE-2020-19002

2021-08-2719:15:07
Google
osv.dev
7
mezzanine
cross site scripting
arbitrary code

EPSS

0.001

Percentile

48.6%

Cross Site Scripting (XSS) in Mezzanine v4.3.1 allows remote attackers to execute arbitrary code via the ‘Description’ field of the component ‘admin/blog/blogpost/add/’. This issue is different than CVE-2018-16632.

EPSS

0.001

Percentile

48.6%