CVE

CVE-2018-6835

CVE-2018-6835

node/hooks/express/apicalls.js in Etherpad Lite before v1.6.3 mishandles JSONP, which allows remote attackers to bypass intended access restrictions.

Source: CVE-2018-6835

Exit mobile version