CVE-2024-50810

Publication date

2024-11-08 00:00:00

Family

mitre

State

PUBLISHED

Description

hopetree izone lts c011b48 contains a Cross Site Scripting (XSS) vulnerability in the article comment function. In appscommentviews.py, AddCommintView() does not securely filter user input and renders it directly to the frontend page through templates.