ZeroHour

CVE-2021-39391

PoC
CVSS 3.1
6.1 medium
EPSS
<1%p54
Published
()
Modified
Description

Cross Site Scripting (XSS) vulnerability exists in the admin panel in Beego v2.0.1 via the URI path in an HTTP request, which is activated by administrators viewing the "Request Statistics" page.

Vendors
beego
Products
beego
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.