Описание
Leantime allows Stored Cross-Site Scripting (XSS)
STORED XSS +OPEN REDIRECTION in SVG uploads Vulnerable url:https://hack.leantime.io/projects/showProject/3
Пакеты
Наименование
leantime/leantime
composer
Затронутые версииВерсия исправления
< 3.3
3.3
5.1 Medium
CVSS4
Дефекты
CWE-79
5.1 Medium
CVSS4
Дефекты
CWE-79