Mahara before 20.10.5, 21.04.4, 21.10.2, and 22.04.0 allows stored XSS when a particular Cascading Style Sheets (CSS) class for embedly is used, and JavaScript code is constructed to perform an action.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2022-04-28T15:26:15

Updated: 2024-08-03T06:26:06.377Z

Reserved: 2022-04-22T00:00:00

Link: CVE-2022-29584

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-04-28T16:15:08.500

Modified: 2022-05-06T18:39:56.113

Link: CVE-2022-29584

cve-icon Redhat

No data.