CVE-2024-50810 Information
Nov 09, 2024
cve
Description
hopetree izone lts c011b48 contains a Cross Site Scripting (XSS) vulnerability in the article comment function. In \apps\comment\views.py AddCommintView() does not securely filter user input and renders it directly to the frontend page through templates.
Reference
https://github.com/Hopetree/izone/issues/289
Share on: