CVE-2024-54123
EUVD-2024-5229929.11.2024, 04:15
Backdrop CMS before 1.28.4 and 1.29.x before 1.29.2 allows XSS via an SVG document, if the SVG tag is allowed for a text format.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| backdropcms | backdrop | 𝑥 < 1.28.4 |
| backdropcms | backdrop | 1.29.0 ≤ 𝑥 < 1.29.2 |
𝑥
= Vulnerable software versions