Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-3hf6-f8ch-5869: Cross-site Scripting in JFinalcms

JFinalcms 5.0.0 is vulnerable to Cross Site Scripting (XSS) via carousel image editing.

ghsa
#xss#git

Cross-site Scripting in JFinalcms

Moderate severity GitHub Reviewed Published Dec 14, 2023 to the GitHub Advisory Database • Updated Dec 15, 2023

Related news

CVE-2023-50100: cms/There is a storage type XSS for carousel image editing.md at master · Jarvis-616/cms

JFinalcms 5.0.0 is vulnerable to Cross Site Scripting (XSS) via carousel image editing.