CVE-2018-17302

Publication date

2018-09-21 06:00:00

Family

mitre

State

PUBLISHED

Description

Stored XSS exists in views/fields/wysiwyg.js in EspoCRM 5.3.6 via a /#Email/view saved draft message.