Safety vulnerability ID: 62667
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Calibreweb versions 0.6.0 to 0.6.12 are vulnerable to Stored XSS in "Metadata". An attacker that has access to edit the metadata information, can inject JavaScript payload in the description field. When a victim tries to open the file, XSS will be triggered.
Latest version: 0.6.24
Web app for browsing, reading and downloading eBooks stored in a Calibre database.
This vulnerability has no description
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application