CVE-2020-26218 Information

Description

touchbase.ai before version 2.0 is vulnerable to Cross-Site Scripting. The vulnerability allows an attacker to inject HTML payloads which could result in defacement user redirection to a malicious webpage/website etc. The issue is patched in version 2.0.

Reference

https://github.com/puncsky/touchbase.ai/security/advisories/GHSA-r4w5-gw36-4792

Share on: