Security Advisory

CVE-2020-25768

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-10-07 20:37:52
Last updated 2024-08-04 15:40:36
Assigner mitre
State PUBLISHED

Description

Contao before 4.4.52, 4.9.x before 4.9.6, and 4.10.x before 4.10.1 have Improper Input Validation. It is possible to inject insert tags in front end forms which will be replaced when the page is rendered.