An issue was discovered in mxGraph through 4.0.0, related to the "draw.io Diagrams" plugin before 8.3.14 for Confluence and other products. Improper input validation/sanitization of a color field leads to XSS. This is associated with javascript/examples/grapheditor/www/js/Dialogs.js.
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
Link | Tags |
---|---|
https://marketplace.atlassian.com/apps/1210933/draw-io-diagrams-for-confluence/version-history | third party advisory release notes |
https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2019-032.txt | third party advisory exploit |
https://github.com/jgraph/mxgraph/commit/76e8e2809b622659a9c5ffdc4f19922b7a68cfa3 | third party advisory patch |