mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-11 16:47:12 +02:00
18 lines
736 B
Markdown
18 lines
736 B
Markdown
### [CVE-2021-31330](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-31330)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
A Cross-Site Scripting (XSS) vulnerability exists within Review Board versions 3.0.20 and 4.0 RC1 and earlier. An authenticated attacker may inject malicious Javascript code when using Markdown editing within the application which remains persistent.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://mattschmidt.net/2021/04/14/review-board-xss-discovered/
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|