Cross-Site Scripting (XSS) vulnerability in Sunlight CMS...
Moderate severity
Unreviewed
Published
Jan 27, 2024
to the GitHub Advisory Database
•
Updated Feb 10, 2024
Description
Published by the National Vulnerability Database
Jan 27, 2024
Published to the GitHub Advisory Database
Jan 27, 2024
Last updated
Feb 10, 2024
Cross-Site Scripting (XSS) vulnerability in Sunlight CMS 8.0.1 allows an authenticated low-privileged user to escalate privileges via a crafted SVG file in the File Manager component.
References