CVE-2020-12882
EUVD-2020-516315.05.2020, 05:15
Submitty through 20.04.01 allows XSS via upload of an SVG document, as demonstrated by an attack by a Student against a Teaching Fellow.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| rcos | submitty | 𝑥 ≤ 20.04.01 |
𝑥
= Vulnerable software versions