Vulnerabilities
Vulnerable Software
Typo3:  >> Svg Sanitizer  >> 1.0.2  Security Vulnerabilities
The SVG Sanitizer extension for TYPO3 has a cross-site scripting vulnerability in versions before 1.0.3. Slightly invalid or incomplete SVG markup is not correctly processed and thus not sanitized at all. Albeit the markup is not valid it still is evaluated in browsers and leads to cross-site scripting. This is fixed in version 1.0.3.
CVSS Score
5.4
EPSS Score
0.002
Published
2020-05-13


Contact Us

Shodan ® - All rights reserved