MEDIUM4.6
GHSA-p7xm-g427-jxfc
Teampass Cross-site Scripting vulnerability
Quick fix
GHSA-p7xm-g427-jxfc — nilsteampassnet/teampass: upgrade to the fixed version with the command below.
composer require nilsteampassnet/teampass:^3.0.9Details
In versions of nilsteampassnet/teampass prior to 3.0.9 some user input was not properly sanitized which may have lead to stored cross-site scripting (XSS) vectors in the application.
Are you affected?
Enter the version of the package you're using.
Affected packages
Packagist/nilsteampassnet/teampass
Introduced in:
0Fixed in: 3.0.9Fix
composer require nilsteampassnet/teampass:^3.0.9