Lucene search

K
osvGoogleOSV:GHSA-6WC4-V4V5-3M82
HistoryMay 14, 2022 - 2:00 a.m.

Subrion CMS Stored Cross-site Scripting (XSS)

2022-05-1402:00:53
Google
osv.dev
6
subrion cms
stored cross-site scripting
_core/admin/pages/add
titles[en]
security vulnerability

AI Score

5.8

Confidence

High

EPSS

0.001

Percentile

34.7%

_core/admin/pages/add/ in Subrion CMS 4.2.1 has XSS via the titles[en] parameter.

AI Score

5.8

Confidence

High

EPSS

0.001

Percentile

34.7%

Related for OSV:GHSA-6WC4-V4V5-3M82