Description
In Blog_mini 1.0, XSS exists via the author name of a comment reply in the app/main/views.py articleDetails() function, related to app/templates/_article_comments.html.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-19127 | In Blog_mini 1.0, XSS exists via the author name of a comment reply in the app/main/views.py articleDetails() function, related to app/templates/_article_comments.html. |
References
| Link | Providers |
|---|---|
| https://github.com/xpleaf/Blog_mini/issues/43 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T22:01:54.177Z
Reserved: 2019-03-14T00:00:00.000Z
Link: CVE-2019-9765
No data.
Status : Modified
Published: 2019-03-14T09:29:00.287
Modified: 2024-11-21T04:52:16.217
Link: CVE-2019-9765
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD