PT-2020-9195 · Pagure+1 · Pagure+1

Mrx@Mailinator.Com

·

Published

2020-09-25

·

Updated

2022-11-16

·

CVE-2019-11556

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Pagure versions prior to 5.6
Description The issue allows for XSS via the templates/blame.html blame view.
Recommendations For versions prior to 5.6, update to version 5.6 or later to resolve the issue.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2019-11556
MGASA-2021-0206
OPENSUSE-SU-2020:1765-1
OPENSUSE-SU-2020:1810-1
OPENSUSE-SU-2020_1765-1

Affected Products

Pagure
Suse