Total vulnerabilities in the database
An anonymous user can craft a URL with text that ends up in the log viewer as is. The text can then include textual messages to mislead the administrator.
Software | From | Fixed in |
---|---|---|
craftercms / crafter_cms | 3.1 | 3.1.18 |
![]() |
3.1.0 | 3.1.18 |