CVE-2019-17427

In Redmine before 3.4.11 and 4.0.x before 4.0.4, persistent XSS exists due to textile formatting errors.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:redmine:redmine:*:*:*:*:*:*:*:*
cpe:2.3:a:redmine:redmine:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2019-10-10 02:05

Updated : 2023-12-10 13:13


NVD link : CVE-2019-17427

Mitre link : CVE-2019-17427

CVE.ORG link : CVE-2019-17427


JSON object : View

Products Affected

redmine

  • redmine
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')