← Back to CVE List

CVE-2024-50810

Published: 2024-11-08T19:15Z
Last Modified: 2024-11-21T09:44Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
hopetree izone lts c011b48 contains a Cross Site Scripting (XSS) vulnerability in the article comment function. In \apps\comment\views.py, AddCommintView() does not securely filter user input and renders it directly to the frontend page through templates. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt