Paquitosoftware · Notimoo · CVE-2021-42244
**Name of the Vulnerable Software and Affected Versions**
PaquitoSoftware Notimoo version 1.2
**Description**
A cross-site scripting (XSS) issue allows attackers to execute arbitrary web scripts or HTML via a crafted title or message in a notification.
**Recommendations**
For PaquitoSoftware Notimoo version 1.2, as a temporary workaround, consider restricting the input for notification titles and messages to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.