Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-gvxv-p9rv-gmcg: Cross-Site Scripting

The extension fails to properly encode user input for output in HTML context. A TYPO3 backend user account is required to exploit the vulnerability.

ghsa
#xss#vulnerability#git#perl

Cross-Site Scripting

Moderate severity GitHub Reviewed Published Jun 17, 2022 • Updated Jun 17, 2022

ghsa: Latest News

GHSA-pw25-c82r-75mm: request-filtering-agent SSRF Bypass via HTTPS Requests to 127.0.0.1