CVE-2020-23234

Publication date

2021-07-26 19:12:02

Family

mitre

State

PUBLISHED

Description

Cross Site Scripting (XSS) vulnerabiity exists in LavaLite CMS 5.8.0 via the Menu Blocks feature, which can be bypassed by using HTML event handlers, such as "ontoggle,".