CVE-2020-25454

Cross-site Scripting (XSS) vulnerability in grocy 2.7.1 via the add recipe module, which gets executed when deleting the recipe.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:grocy_project:grocy:2.7.1:*:*:*:*:*:*:*

Information

Published : 2020-11-18 13:15

Updated : 2020-11-27 06:37


NVD link : CVE-2020-25454

Mitre link : CVE-2020-25454


JSON object : View

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Advertisement

dedicated server usa

Products Affected

grocy_project

  • grocy