CVE List

CVE-2019-19714

Moderate 5.3

Contao 4.8.4 and 4.8.5 has Improper Encoding or Escaping of Output. It is possible to inject insert tags into the login module which will be replaced when the page is rendered.

Published December 17, 2019.

Affected software

Get alerts for Contao Contao

Reference links