Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:30184
HistoryApr 28, 2021 - 1:31 a.m.

Cross-Site Scripting (XSS)

2021-04-2801:31:46
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6
cross-site scripting
getkirby/cms
svg upload
vulnerability
security

EPSS

0.015

Percentile

87.2%

getkirby/cms is vulnerable to cross-site scripting. An attacker with write access to the Kirby Panel may upload an SVG file that contains malicious `

EPSS

0.015

Percentile

87.2%