CVE-2021-42567
07.12.2021, 22:15
Apereo CAS through 6.4.1 allows XSS via POST requests sent to the REST API endpoints.
| Vendor | Product | Version |
|---|---|---|
| apereo | central_authentication_service | 6.3.0 ≤ 𝑥 < 6.3.7.1 |
| apereo | central_authentication_service | 6.4.0 ≤ 𝑥 < 6.4.2 |
𝑥
= Vulnerable software versions