CVE-2021-42112

Publication date

2021-10-08 20:45:23

Family

mitre

State

PUBLISHED

Description

The "File upload question" functionality in LimeSurvey 3.x-LTS through 3.27.18 allows XSS in assets/scripts/modaldialog.js and assets/scripts/uploader.js.