296,147
Total vulnerabilities in the database
Due to a lack of parameter sanitisation a carefully crafted URL could be used to inject arbitrary HTML into the CMS Edit page.
An attacker could create a URL and share it with a site administrator to perform an attack.
Software | From | Fixed in |
---|---|---|
![]() |
3.1.18 | 3.1.19 |
![]() |
3.2.3 | 3.2.4 |
![]() |
3.3.1 | 3.3.2 |