Lucene search

K
osvGoogleOSV:CVE-2020-25768
HistoryOct 07, 2020 - 9:15 p.m.

CVE-2020-25768

2020-10-0721:15:14
Google
osv.dev
2

6.7 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

38.7%

Contao before 4.4.52, 4.9.x before 4.9.6, and 4.10.x before 4.10.1 have Improper Input Validation. It is possible to inject insert tags in front end forms which will be replaced when the page is rendered.

CPENameOperatorVersion
contaoeq4.10.0

6.7 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

38.7%