Cross Site Scripting (XSS) in Lin-CMS-Flask v0.1.1 allows remote malicious users to execute arbitrary code by entering scripts in the the 'Username' parameter of the in component 'app/api/cms/user.py'.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
talelin lin-cms-flask 0.1.1 |