Описание
brotkrueml/typo3-matomo-integration vulnerable to Cross-Site Scripting
The extension fails to properly encode user input for output in HTML context. A TYPO3 backend user account is required to exploit the vulnerability.
Пакеты
Наименование
brotkrueml/typo3-matomo-integration
composer
Затронутые версииВерсия исправления
< 1.3.2
1.3.2
Связанные уязвимости
CVSS3: 6.1
nvd
больше 3 лет назад
The matomo_integration (aka Matomo Integration) extension before 1.3.2 for TYPO3 allows XSS.