Security Advisory

CVE-2021-31330

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-05-11 17:34:27
Last updated 2024-08-03 22:55:53
Assigner mitre
State PUBLISHED

Description

A Cross-Site Scripting (XSS) vulnerability exists within Review Board versions 3.0.20 and 4.0 RC1 and earlier. An authenticated attacker may inject malicious Javascript code when using Markdown editing within the application which remains persistent.