MEDIUM
GHSA-5j86-5xvg-7q93
TYPO3 Cross-Site Scripting (XSS) in form component
Quick fix
GHSA-5j86-5xvg-7q93 — typo3/cms: upgrade to the fixed version with the command below.
composer require typo3/cms:^6.2.18Details
Failing to sanitize content from unauthenticated website visitors, the form component is susceptible to Cross-Site Scripting.
Are you affected?
Enter the version of the package you're using.