CVE-2018-18553

Publication date

2018-10-22 01:00:00

Family

mitre

State

PUBLISHED

Description

Leanote 2.6.1 has XSS via the Blog Basic Setting title field, which is mishandled during rendering of the "likes" page.