CVE-2019-20903 | xxxCVE-2019-20903 – xxx
菜单

CVE-2019-20903

九月 30, 2020 - 未分类

  1. CVE-Search
  2. CVE-2019-20903
ID CVE-2019-20903
SummaryThe hyperlinks functionality in atlaskit/editor-core in before version 113.1.5 allows remote attackers to inject arbitrary HTML or JavaScript via a Cross-Site Scripting (XSS) vulnerability in link targets.
References
Vulnerable Configurations

    CVSS
    Base: 5.0
    Impact:
    Exploitability:
    Access
    VectorComplexityAuthentication
    Impact
    ConfidentialityIntegrityAvailability
    Last major update01-10-2020 – 02:15
    Published01-10-2020 – 02:15
    Last modified01-10-2020 – 02:15

    Notice: Undefined variable: canUpdate in /var/www/html/wordpress/wp-content/plugins/wp-autopost-pro/wp-autopost-function.php on line 51