CVE-2018-19289
15.11.2018, 06:29
An issue was discovered in Valine v1.3.3. It allows HTML injection, which can be exploited for JavaScript execution via an EMBED element in conjunction with a .pdf file.
Vendor | Product | Version |
---|---|---|
valine.js | valine | 1.3.3 |
𝑥
= Vulnerable software versions