Mautic version 2.1.0 - 2.11.0 is vulnerable to an inline JS XSS attack when using Mautic forms on a Mautic landing page using GET parameters to pre-populate the form.
References
Link Resource
https://github.com/mautic/mautic/releases/tag/2.12.0 Exploit Release Notes Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2022-10-03T16:23:09

Updated: 2022-10-03T16:23:09

Reserved: 2022-10-03T00:00:00


Link: CVE-2017-1000488

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-01-03T16:29:00.183

Modified: 2021-01-25T16:51:54.423


Link: CVE-2017-1000488

JSON object: View

cve-icon Redhat Information

No data.

CWE