Description
Contentful through 2020-05-21 for Python allows reflected XSS, as demonstrated by the api parameter to the-example-app.py.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-1319 | Contentful through 2020-05-21 for Python allows reflected XSS, as demonstrated by the api parameter to the-example-app.py. |
Github GHSA |
GHSA-g5j6-r3x9-gf2m | Cross-site scripting in Contentful |
References
| Link | Providers |
|---|---|
| https://github.com/contentful/the-example-app.py/issues/44 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T12:11:19.471Z
Reserved: 2020-05-21T00:00:00.000Z
Link: CVE-2020-13258
No data.
Status : Modified
Published: 2020-05-21T17:15:10.353
Modified: 2024-11-21T05:00:53.477
Link: CVE-2020-13258
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA