Security Advisory
CVE-2019-15053
6.8
MEDIUM
Vulnerability Description
The "HTML Include and replace macro" plugin before 1.5.0 for Confluence Server allows a bypass of the includeScripts=false XSS protection mechanism via vectors involving an IFRAME element.
Published Date
August 14, 2019
Official Source
NIST NVD Advisory