CVE-2019-17606

Publication date

2019-10-23 16:18:14

Family

mitre

State

PUBLISHED

Description

The Post editor functionality in the hexo-admin plugin versions 2.3.0 and earlier for Node.js is vulnerable to stored XSS via the content of a post.