Логотип exploitDog
bind:CVE-2021-21365
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-21365

Количество 2

Количество 2

nvd логотип

CVE-2021-21365

почти 5 лет назад

Bootstrap Package is a theme for TYPO3. It has been discovered that rendering content in the website frontend is vulnerable to cross-site scripting. A valid backend user account is needed to exploit this vulnerability. Users of the extension, who have overwritten the affected templates with custom code must manually apply the security fix. Update to version 7.1.2, 8.0.8, 9.1.4, 10.0.10 or 11.0.3 of the Bootstrap Package that fix the problem described. Updated version are available from the TYPO3 extension manager, Packagist and at https://extensions.typo3.org/extension/download/bootstrap_package/.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-p48w-vf3c-rqjx

почти 5 лет назад

Cross-Site Scripting in Bootstrap Package

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-21365

Bootstrap Package is a theme for TYPO3. It has been discovered that rendering content in the website frontend is vulnerable to cross-site scripting. A valid backend user account is needed to exploit this vulnerability. Users of the extension, who have overwritten the affected templates with custom code must manually apply the security fix. Update to version 7.1.2, 8.0.8, 9.1.4, 10.0.10 or 11.0.3 of the Bootstrap Package that fix the problem described. Updated version are available from the TYPO3 extension manager, Packagist and at https://extensions.typo3.org/extension/download/bootstrap_package/.

CVSS3: 5.4
0%
Низкий
почти 5 лет назад
github логотип
GHSA-p48w-vf3c-rqjx

Cross-Site Scripting in Bootstrap Package

CVSS3: 5.4
0%
Низкий
почти 5 лет назад

Уязвимостей на страницу