DMP Roadmap before 3.0.4 allows XSS.
References
Link | Resource |
---|---|
https://github.com/DMPRoadmap/roadmap/commit/0b83ad31ac01a709633080b134cfb6debc310c5e | Patch Third Party Advisory |
https://github.com/DMPRoadmap/roadmap/compare/v3.0.3...v3.0.4 | Patch Third Party Advisory |
https://github.com/DMPRoadmap/roadmap/pull/3030 | Patch Third Party Advisory |
Configurations
History
No history.
Information
Published : 2022-01-01 23:15
Updated : 2022-01-07 19:39
NVD link : CVE-2021-44896
Mitre link : CVE-2021-44896
CVE.ORG link : CVE-2021-44896
JSON object : View
Products Affected
dmproadmap_project
- dmproadmap
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')