Количество 2
Количество 2
CVE-2021-35210
больше 4 лет назад
Contao 4.5.x through 4.9.x before 4.9.16, and 4.10.x through 4.11.x before 4.11.5, allows XSS. It is possible to inject code into the tl_log table that will be executed in the browser when the system log is called in the back end.
CVSS3: 6.1
EPSS: Низкий
GHSA-h58v-c6rf-g9f7
больше 4 лет назад
Cross site scripting in the system log
CVSS3: 6.1
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2021-35210 Contao 4.5.x through 4.9.x before 4.9.16, and 4.10.x through 4.11.x before 4.11.5, allows XSS. It is possible to inject code into the tl_log table that will be executed in the browser when the system log is called in the back end. | CVSS3: 6.1 | 0% Низкий | больше 4 лет назад | |
GHSA-h58v-c6rf-g9f7 Cross site scripting in the system log | CVSS3: 6.1 | 0% Низкий | больше 4 лет назад |
Уязвимостей на страницу
20