CVE-2019-20520

Publication date

2020-03-19 17:52:46

Family

mitre

State

PUBLISHED

Description

ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the api/method/ URI.