yourls is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
References
Link | Resource |
---|---|
https://github.com/yourls/yourls/commit/1d8e224ebabb8a4c75b97f026950ed710faab0ff | Patch Third Party Advisory |
https://huntr.dev/bounties/b4085d13-54fa-4419-a2ce-1d780cc31638 | Exploit Issue Tracking Patch Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: @huntrdev
Published: 2021-09-15T12:05:13
Updated: 2021-09-15T12:05:13
Reserved: 2021-09-09T00:00:00
Link: CVE-2021-3785
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-09-15T12:15:16.283
Modified: 2021-09-23T19:31:11.840
Link: CVE-2021-3785
JSON object: View
Redhat Information
No data.
CWE