Vulnerability CVE-2024-25873


Published: 2024-02-22

Description:
Enhavo v0.13.1 was discovered to contain an HTML injection vulnerability in the Author text field under the Blockquote module. This vulnerability allows attackers to execute arbitrary code via a crafted payload.

 References:
https://github.com/dd3x3r/enhavo/blob/main/html-injection-page-content-blockquote-author-v0.13.1.md
https://www.enhavo.com/

Copyright 2026, cxsecurity.com

 

Back to Top