Security Advisory

CVE-2019-15607

5.4
MEDIUM

Vulnerability Description

A stored XSS vulnerability is present within node-red (version: <= 0.20.7) npm package, which is a visual tool for wiring the Internet of Things. This issue will allow the attacker to steal session cookies, deface web applications, etc.
Published Date January 28, 2020
Official Source NIST NVD Advisory