CVE-2015-8310
27.03.2017, 15:59
Cross-site scripting (XSS) vulnerability in Cherry Music before 0.36.0 allows remote authenticated users to inject arbitrary web script or HTML via the playlistname field when creating a new playlist.
Vendor | Product | Version |
---|---|---|
fomori | cherrymusic | 𝑥 ≤ 0.35.2 |
𝑥
= Vulnerable software versions
References