CVE

CVE-2020-1943

CVE-2020-1943

Data sent with contentId to /control/stream is not sanitized, allowing XSS attacks, in Apache OFBiz 16.11.01 to 16.11.07

Source: CVE-2020-1943

Exit mobile version