CVE-2021-25894
02.04.2021, 12:15
Magnolia CMS from 6.1.3 to 6.2.3 contains a stored cross-site scripting (XSS) vulnerability in the /magnoliaPublic/travel/members/login.html mgnlUserId parameter.
Vendor | Product | Version |
---|---|---|
magnolia-cms | magnolia_cms | 6.1.3 ≤ 𝑥 < 6.1.7 |
magnolia-cms | magnolia_cms | 6.2.3 ≤ 𝑥 < 6.2.4 |
𝑥
= Vulnerable software versions
References