oss-sec mailing list archives

CVE request - BigTree CMS 4.2.13 - Cross-Site Scripting (XSS)


From: haojun hou <haojunhou () gmail com>
Date: Wed, 7 Dec 2016 11:16:50 +0800

If suitable for a CVE please assign one for BigTree CMS reflected
cross-site scripting vulnerability. Thanks.

Affected version: 4.2.13

Reported by Tim Buckingham in
https://github.com/bigtreecms/BigTree-CMS/issues/264
<https://github.com/bigtreecms/BigTree-CMS/pull/256>

Fixed in:
https://github.com/bigtreecms/BigTree-CMS/commit/59ebef5978f80e2fdc7b4db4a28b668c5a39fbc3

Thanks & Regards

Current thread: