CVE-2021-42750
A cross-site scripting (XSS) vulnerability in Rule Engine in ThingsBoard 3.3.1 allows remote attackers (with administrat
A cross-site scripting (XSS) vulnerability in Rule Engine in ThingsBoard 3.3.1 allows remote attackers (with administrative access) to inject arbitrary JavaScript within the title of a rule node.
MEDIUM · CVSS 4.8
EPSS 0.00745
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0