Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-q3c8-65q7-9v78: Cross site scripting in automad/automad

Cross Site Scripting (XSS) vulnerability in automad 1.7.5 allows remote attackers to run arbitrary code via the user name field when adding a user.

ghsa
#xss#vulnerability#git

Cross site scripting in automad/automad

Moderate severity GitHub Reviewed Published Feb 3, 2023 to the GitHub Advisory Database • Updated Feb 4, 2023

Related news

CVE-2021-37502: Storage XSS vulnerability in /gui/accounts.php · Issue #29 · marcantondahmen/automad

Cross Site Scripting (XSS) vulnerability in automad 1.7.5 allows remote attackers to run arbitrary code via the user name field when adding a user.