CVE-2021-28380
16.03.2021, 20:15
The aimeos (aka Aimeos shop and e-commerce framework) extension before 19.10.12 and 20.x before 20.10.5 for TYPO3 allows XSS via a backend user account.
Vendor | Product | Version |
---|---|---|
aimeos_project | aimeos | 𝑥 < 19.10.12 |
aimeos_project | aimeos | 20.0.0 ≤ 𝑥 < 20.10.5 |
𝑥
= Vulnerable software versions