CVE-2022-24585
15.02.2022, 16:15
A stored cross-site scripting (XSS) vulnerability in the component /core/admin/comment.php of PluXml v5.8.7 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the author parameter.
| Vendor | Product | Version |
|---|---|---|
| pluxml | pluxml | 5.8.7 |
𝑥
= Vulnerable software versions
Ubuntu Releases