CVE

CVE-2019-18209

CVE-2019-18209

templates/pad.html in Etherpad-Lite 1.7.5 has XSS when the browser does not encode the path of the URL, as demonstrated by Internet Explorer.

Source: CVE-2019-18209

Exit mobile version