CVE

CVE-2019-17606

CVE-2019-17606

The Post editor functionality in the hexo-admin plugin versions 2.3.0 and earlier for Node.js is vulnerable to stored XSS via the content of a post.

Source: CVE-2019-17606

Exit mobile version