There is a Stored XSS Vulnerability in Emlog Pro 2.2.8 Article Publishing, due to non-filtering of quoted content.
The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.
Link | Tags |
---|---|
https://github.com/emlog/emlog/issues/285 | third party advisory issue tracking exploit |
https://github.com/Ox130e07d/CVE-2024-25381/blob/main/description | third party advisory |