Bolt 3.6.4 has XSS via the slug, teaser, or title parameter to editcontent/pages, a related issue to CVE-2017-11128 and CVE-2018-19933.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2019-12-31T16:18:51
Updated: 2024-08-04T21:54:44.537Z
Reserved: 2019-03-03T00:00:00
Link: CVE-2019-9553
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-12-31T17:15:11.160
Modified: 2024-11-21T04:51:50.803
Link: CVE-2019-9553
Redhat
No data.