CVE-2021-25277

Publication date

2021-03-19 16:39:35

Family

mitre

State

PUBLISHED

Description

FTAPI 4.0 - 4.10 allows XSS via a crafted filename to the alternative text hover box in the file submission component.