An issue was discovered in Zammad before 3.4.1. There is Stored XSS via a Tags element in a TIcket.
The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.
Link | Tags |
---|---|
https://zammad.com/news/security-advisory-zaa-2020-21 | vendor advisory |