From 75fdd023c527d5892a6ec6a786d7cbd979b80fb6 Mon Sep 17 00:00:00 2001 From: Prince Chaddha Date: Fri, 14 Oct 2022 17:13:39 +0530 Subject: [PATCH] Update flatpress-xss.yaml --- vulnerabilities/other/flatpress-xss.yaml | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/vulnerabilities/other/flatpress-xss.yaml b/vulnerabilities/other/flatpress-xss.yaml index a25d363186..4490f030e4 100644 --- a/vulnerabilities/other/flatpress-xss.yaml +++ b/vulnerabilities/other/flatpress-xss.yaml @@ -8,10 +8,11 @@ info: A Reflected cross-site scripting (XSS) vulnerability exists in FlatPress 1.2.1 that allows for arbitrary execution of JavaScript commands through blog content. reference: - https://github.com/flatpressblog/flatpress/issues/153 + - https://github.com/flatpressblog/flatpress metadata: verified: true shodan-query: http.html:"Flatpress" - tags: flatpress,xss,authenticated + tags: flatpress,xss,authenticated,oss requests: - raw: