CVE-2019-17496
Craft CMS before 3.3.8 has stored XSS via a name field. This field is mishandled during site deletion.
Craft CMS before 3.3.8 has stored XSS via a name field. This field is mishandled during site deletion.
MEDIUM · CVSS 6.1
EPSS 0.00328
Monitor
- No active-exploitation, high-EPSS, or public-exploit signals - routine patching cadence
Sigma rules0
YARA rules0