A stored cross-site scripting (XSS) vulnerability in the Media module of Piranha CMS v12.1 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Name field.
| Software | From | Fixed in |
|---|---|---|
| dotnetfoundation / piranha_cms | 12.1 | 12.1.x |