Sylius 1.12.13 is vulnerable to Cross Site Scripting (XSS) via the "Province" field in Address Book.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/r2tunes/Reports/blob/main/Sylius.md |
History
Fri, 22 Nov 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Sylius
Sylius sylius |
|
CPEs | cpe:2.3:a:sylius:sylius:1.12.13:*:*:*:*:*:*:* | |
Vendors & Products |
Sylius
Sylius sylius |
|
Metrics |
cvssV3_1
|
ssvc
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-04-22T00:00:00
Updated: 2024-11-22T14:28:29.018Z
Reserved: 2024-03-19T00:00:00
Link: CVE-2024-29376
Vulnrichment
Updated: 2024-08-02T01:10:54.518Z
NVD
Status : Awaiting Analysis
Published: 2024-04-22T19:15:46.560
Modified: 2024-11-22T15:15:06.440
Link: CVE-2024-29376
Redhat
No data.