silverstripe/framework Security Advisories for 4.13.x-dev (2)
-
[MEDIUM] CVE-2024-32981 - XSS Vulnerability with text/html base64-encoded payload
PKSA-jndv-7cgy-xwm3 CVE-2024-32981 GHSA-chx7-9x8h-r5mg
Affected version: <5.2.16
Reported by:
GitHub, FriendsOfPHP/security-advisories -
SS-2024-001 - TinyMCE allows svg files linked in object tags
Affected version: <5.2.16
Reported by:
FriendsOfPHP/security-advisories