public/js/frappe/form/footer/timeline... CVE-2019-15700

4.3 AV AC AU C I A
发布: 2019-08-27
修订: 2019-09-04

public/js/frappe/form/footer/timeline.js in Frappe Framework 12 through 12.0.8 does not escape HTML in the timeline and thus is affected by crafted "changed value of" text.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息