An issue was discovered in the Image Resizer plugin before 2.0.9 for Craft CMS. There is stored XSS in the Bulk Resize action.
References
Link Resource
https://github.com/verbb/image-resizer/blob/craft-3/CHANGELOG.md Release Notes Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2020-05-25T16:33:50

Updated: 2020-05-25T16:33:50

Reserved: 2020-05-25T00:00:00


Link: CVE-2020-13459

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-05-25T17:15:09.547

Modified: 2020-05-27T12:46:01.773


Link: CVE-2020-13459

JSON object: View

cve-icon Redhat Information

No data.

CWE