GHSA-vcvg-g8p2-3hqr, CVE-2022-42094
packagist/backdrop/backdrop
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Backdrop CMS version 1.23.0 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the 'Card' content.
All versions up to 1.23.0
Unfortunately, there is no solution available yet.
2022-11-23
source |