CVE-2021-24435
06.09.2021, 11:15
The iframe-font-preview.php file of the titan-framework does not properly escape the font-weight and font-family GET parameters before outputting them back in an href attribute, leading to Reflected Cross-Site Scripting issues
Vendor | Product | Version |
---|---|---|
gambit | titan_framework | 𝑥 ≤ 1.12.1 |
𝑥
= Vulnerable software versions