Safety vulnerability ID: 41183
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Cross Site Scripting (XSS) in Lin-CMS-Flask v0.1.1 allows remote attackers to execute arbitrary code by entering scripts in the 'Username' parameter of the in component 'app/api/cms/user.py' (https://github.com/TaleLin/lin-cms-flask/issues/28). See CVE-2020-18699.
Latest version: 0.4.11
A simple and practical CMS implememted by flask
Cross Site Scripting (XSS) in Lin-CMS-Flask v0.1.1 allows remote attackers to execute arbitrary code by entering scripts in the the 'Username' parameter of the in component 'app/api/cms/user.py'. See CVE-2020-18699.
MISC:https://github.com/TaleLin/lin-cms-flask/issues/28: https://github.com/TaleLin/lin-cms-flask/issues/28
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application