Assigner | jpcert |
Reserved | 2024-05-08 |
Published | 2024-05-13 |
Updated | 2024-06-04 |
Description
Phormer prior to version 3.35 contains a cross-site scripting vulnerability. If this vulnerability is exploited, a remote unauthenticated attacker may execute an arbitrary script on the web browser of the user.
Problem types
Cross-site scripting (XSS)
Product status
References
https://github.com/eyedean/phormer
https://sourceforge.net/projects/rephormer/
https://jvn.jp/en/jp/JVN61054671/