CVE

CVE-2019-17488

CVE-2019-17488

b3log Symphony (aka Sym) before 3.6.0 has XSS via the HTTP User-Agent header.

Source: CVE-2019-17488

Exit mobile version