CVE-2021-36702

CVE-2021-36702

The "content" field in the "regular post" page of the "add content" menu under "dashboard" in htmly 2.8.1 has a storage cross site scripting (XSS) vulnerability. It allows remote attackers to send authenticated post-http requests to add / content and inject arbitrary web scripts or HTML through special content.

Source: CVE-2021-36702

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다