The output in the admin settings page is not properly escaped and may lead to an XSS attack.

This vulnerability affects the following application versions:

  • SVG Support 2.4
  • SVG Support 2.4.1
  • SVG Support 2.4.2
  • SVG Support 2.5
  • SVG Support 2.5.1
  • SVG Support 2.5.2
  • SVG Support 2.5.3
  • SVG Support 2.5.4
  • SVG Support 2.5.5
  • SVG Support 2.5.6
  • SVG Support 2.5.7

Skriv et svar

Din e-mailadresse vil ikke blive publiceret. Krævede felter er markeret med *