CVE-2022-42095

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in packagist/backdrop/backdrop

Identifiers

GHSA-58rj-w2qf-qjg7, CVE-2022-42095

Package Slug

packagist/backdrop/backdrop

Vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Description

Backdrop CMS version 1.23.0 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Page content.

Affected Versions

All versions up to 1.23.0

Solution

Unfortunately, there is no solution available yet.

Last Modified

2022-11-24

source