NA

CVE-2018-5478

Published: 21/09/2023 Updated: 23/09/2023
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Contao 3.x prior to 3.5.32 allows XSS via the unsubscribe module in the frontend newsletter extension.

Vulnerable Product Search on Vulmon Subscribe to Product

contao contao