← Back to CVE List

CVE-2020-36324

Published: 2021-04-21T20:15Z
Last Modified: 2024-11-21T05:29Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Wikimedia Quarry analytics-quarry-web before 2020-12-15 allows Reflected XSS because app.py does not explicitly set the application/json content type. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt