Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-m3p6-43xj-pf9v: Cross-site Scripting in JFinalcms

JFinalcms 5.0.0 is vulnerable to Cross Site Scripting (XSS) via Label management editing.

ghsa
#xss#git

Cross-site Scripting in JFinalcms

Moderate severity GitHub Reviewed Published Dec 14, 2023 to the GitHub Advisory Database • Updated Dec 15, 2023

Related news

CVE-2023-50101: cms/Label management editing with stored XSS.md at master · Jarvis-616/cms

JFinalcms 5.0.0 is vulnerable to Cross Site Scripting (XSS) via Label management editing.