← Back to CVE List
CVE-2024-50810
hopetree izone lts c011b48 contains a Cross Site Scripting (XSS) vulnerability in the article comment function. In \apps\comment\views.py, AddCommintView() does not securely filter user input and renders it directly to the frontend page through templates.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt