Description
Contao 3.x before 3.5.32 allows XSS via the unsubscribe module in the frontend newsletter extension.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-2550 | Contao 3.x before 3.5.32 allows XSS via the unsubscribe module in the frontend newsletter extension. |
Github GHSA |
GHSA-mpg7-2rx9-h5qp | Contao Cross-site Scripting vulnerabililty |
References
History
Tue, 24 Sep 2024 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-24T18:43:21.305Z
Reserved: 2018-01-12T00:00:00.000Z
Link: CVE-2018-5478
Updated: 2024-08-05T05:40:50.627Z
Status : Modified
Published: 2023-09-21T06:15:12.223
Modified: 2024-11-21T04:08:52.957
Link: CVE-2018-5478
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA