QID 982295
QID 982295: Nodejs (npm) Security Update for total.js (GHSA-72p5-2r6g-fm6v)
Total.js CMS 12.0.0 has XSS related to themes/admin/views/index.html (item.message) and themes/admin/public/ui.js (column.format).
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-72p5-2r6g-fm6v for updates pertaining to this vulnerability.
Vendor References
- GHSA-72p5-2r6g-fm6v -
github.com/advisories/GHSA-72p5-2r6g-fm6v
CVEs related to QID 982295
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-72p5-2r6g-fm6v | total.js |
|