Security Advisory

CVE-2020-13870

5.4
MEDIUM

Vulnerability Description

An issue was discovered in the Comments plugin before 1.5.5 for Craft CMS. There is stored XSS via an asset volume name.
Published Date June 5, 2020
Official Source NIST NVD Advisory