Vulnerabilities/

Formstone Vulnerable to Reflected XSS

Severity:
Medium

Description

Formstone <=1.4.16 is vulnerable to a Reflected Cross-Site Scripting (XSS) vulnerability caused by improper validation of user supplied input in the upload-target.php and upload-chunked.php files.

Recommendation

Update the formstone package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
formstone
Anything's wrong? Let us know Last updated on April 01, 2024