CVE List

CVE-2021-43682

Moderate 6.1

thinkphp-bjyblog (last update Jun 4 2021) is affected by a Cross Site Scripting (XSS) vulnerability in AdminBaseController.class.php. The exit function will terminate the script and print the message to the user which has $_SERVER['HTTP_HOST'].

Published December 2, 2021.

Affected software

Get alerts for Thinkphp-bjyblog Project Thinkphp-bjyblog

Reference links