Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-41261

Опубликовано: 16 дек. 2021
Источник: ubuntu
Приоритет: medium
CVSS2: 3.5
CVSS3: 8.1

Описание

Galette is a membership management web application built for non profit organizations and released under GPLv3. Versions prior to 0.9.6 are subject to stored cross site scripting attacks via the preferences footer. The preference footer can only be altered by a site admin. This issue has been resolved in the 0.9.6 release and all users are advised to upgrade. There are no known workarounds.

РелизСтатусПримечание
esm-apps/xenial

needed

trusty

ignored

end of standard support
upstream

needs-triage

xenial

ignored

end of standard support

Показывать по

3.5 Low

CVSS2

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 8.1
nvd
около 4 лет назад

Galette is a membership management web application built for non profit organizations and released under GPLv3. Versions prior to 0.9.6 are subject to stored cross site scripting attacks via the preferences footer. The preference footer can only be altered by a site admin. This issue has been resolved in the 0.9.6 release and all users are advised to upgrade. There are no known workarounds.

CVSS3: 8.1
debian
около 4 лет назад

Galette is a membership management web application built for non profi ...

3.5 Low

CVSS2

8.1 High

CVSS3