Description
Crafter CMS Crafter Studio 3.0.1 is affected by: Cross Site Scripting (XSS), which allows remote attackers to steal users’ cookies.
Remediation
References
https://docs.craftercms.org/en/3.0/security/advisory.html
Related Vulnerabilities
CVE-2022-23106 Vulnerability in maven package io.jenkins:configuration-as-code
CVE-2016-0793 Vulnerability in maven package org.wildfly:wildfly-undertow
CVE-2023-40037 Vulnerability in maven package org.apache.nifi:nifi-dbcp-service-api
CVE-2023-33201 Vulnerability in maven package org.bouncycastle:bcprov-debug-jdk14
CVE-2011-5245 Vulnerability in maven package org.jboss.resteasy:resteasy-jaxrs