Vulnerabilities (CVE)

Filtered by vendor Dotnetfoundation Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-25977 1 Dotnetfoundation 1 Piranha Cms 2021-10-26 3.5 LOW 5.4 MEDIUM
In PiranhaCMS, versions 7.0.0 to 9.1.1 are vulnerable to stored XSS due to the page title improperly sanitized. By creating a page with a specially crafted page title, a low privileged user can trigger arbitrary JavaScript execution.