Security Advisory

CVE-2019-17488

6.1
MEDIUM

Vulnerability Description

b3log Symphony (aka Sym) before 3.6.0 has XSS via the HTTP User-Agent header.
Published Date October 10, 2019
Official Source NIST NVD Advisory