CVE-2019-20519
ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the user/ URI, as demonstrated by a crafted e-mail address.
ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the user/ URI, as demonstrated by a crafted e-mail address.
MEDIUM · CVSS 6.1
EPSS 0.00344
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0