LogicalDOC Enterprise and Community Edition (CE) are vulnerable to a stored (persistent, or "Type II") cross-site scripting (XSS) condition in the document file name.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
logicaldoc logicaldoc 8.8.2 |
||
logicaldoc logicaldoc 8.7.3 |