VDB
Sign up
MEDIUM5.4

GHSA-mvw8-v767-qhjm

Radiant CMS vulnerable to Cross-site Scripting

Details

Radiant CMS 1.1.4 has XSS via crafted Markdown input in the `part_body_content` parameter to an `admin/pages/*/edit `resource.

Are you affected?

Enter the version of the package you're using.

Affected packages

RubyGems/radiant
Introduced in: 0

No fixed version published yet for radiant (bundler). Pin to a known-safe version or switch to an alternative.

References