Safety vulnerability ID: 38542
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Kiwi TCMS 6.3 resolves a medium severity XSS vulnerability which can be exploited when previewing malicious text in Simple MDE editor. Additionally, it uses 'mozilla/bleach' before rendering Markdown to the user as a second layer of protection against the previously mentioned XSS vulnerability.
https://github.com/kiwitcms/Kiwi/commit/27b1ff7ab243d5112f63fa64b703c59a3504996c
https://github.com/kiwitcms/Kiwi/commit/0bb3f7a1320a8d6a6ce71d0225049f93483da814
Latest version: 12.4
Test Case Management System
This vulnerability has no description
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application