CVE

CVE-2021-25969

CVE-2021-25969

In “Camaleon CMS� application, versions 0.0.1 to 2.6.0 are vulnerable to stored XSS, that allows unprivileged application users to store malicious scripts in the comments section of the post. These scripts are executed in a victim’s browser when they open the page containing the malicious comment.

Source: CVE-2021-25969

Exit mobile version