VWE-2021-6100 Printable Version

https://www.vaultwiki.org/pages/Book/Documentation/VWE-2021-6100
This page is a chapter in Info Known Vulnerabilities

This page has been seen 106,115 times.

    • Created by on
Common NameNone
VWE-IDVWE-2021-6100
Related ReportNone
SeverityLOW
Exploit DifficultyNORMAL
PlatformAffects all platforms supported by the vulnerable versions.
DescriptionHTML Injection. When previewing content or displaying an error, an editor field is presented again after submission without reencoding the submitted value.
DiscoveredMay 7, 2021
ResolvedJune 6, 2021
Patches Available4.1.1 Patch Level 5
4.1.0 Patch Level 7
4.1.0 RC 3 Patch Level 9
The versions listed below are known to be affected by this issue. If you are using one of those versions, you should update to a newer release that has no known vulnerabilities.