CVE

CVE-2019-15484

CVE-2019-15484

Bolt before 3.6.10 has XSS via an image’s alt or title field.

Source: CVE-2019-15484

Exit mobile version