Launch Week Day 1: Announcing Security Design Review
UNKNOWN Maven

OpenCMS Cross-Site Scripting vulnerability

GHSA-h75c-f2xx-9vxv · CVE-2024-42699

Published · Modified

Description

Cross Site Scripting vulnerability in Create/Modify article function in Alkacon OpenCMS 17.0 allows remote attacker to inject javascript payload via image title sub-field in the image field

Ready to move

Start Securing

Free, no credit card | First findings in minutes