Lucene search

K
osvGoogleOSV:GHSA-7MJ4-2984-955F
HistoryMay 14, 2022 - 1:57 a.m.

AlchemyCMS is vulnerable to stored XSS via the /admin/pictures image field

2022-05-1401:57:26
Google
osv.dev
1
alchemycms 4.1.0 vulnerability storedxss imagefield

EPSS

0.001

Percentile

45.0%

A stored XSS vulnerability has been discovered in version 4.1.0 of AlchemyCMS via the /admin/pictures image filename field.

EPSS

0.001

Percentile

45.0%

Related for OSV:GHSA-7MJ4-2984-955F