CVE-2021-33351

Publication date

2023-03-08 00:00:00

Family

mitre

State

PUBLISHED

Description

Cross Site Scripting Vulnerability in Wyomind Help Desk Magento 2 extension v.1.3.6 and before and fixed in v.1.3.7 allows attackers to escalte privileges via a crafted payload in the ticket message field.