CNNVD-202508-724 Information

CNNVD ID

CNNVD-202508-724

CVE-2020-9322

  • CNNVD Published: 2025-08-08

Description (Chinese)

Statamic Core是美国Statamic公司的一个内容管理系统的核心组件。 Statamic Core 2.11.8之前版本存在安全漏洞,该漏洞源于/users端点未正确验证输入,可能导致跨站脚本攻击。

Description (English)

Statamic Core is the core component of a content management system of Statamic in the United States. There was a security loophole in the previous version of Statamic Core 2.11.8, which originated from/users endpoint incorrect validation input, which could lead to a cross-site script attack.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Statamic

Published

2025-08-08

Last Modified

2026-02-24

References

https://gist.github.com/kernelsndrs/86b78e869d481566223914ec7d4fc881 https://statamic.com/changelog#2.11.18 https://web.archive.org/web/20200304174034/www.statamic.com/changelog#2.11.18 https://access.redhat.com/security/cve/cve-2020-9322

Patch

https://statamic.com/release-notes

Share on: