First published: Wed Jun 05 2019(Updated: )
Gila CMS 1.9.1 has XSS.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tina Tinacms | =1.9.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-9647 is a vulnerability in Gila CMS 1.9.1 that allows for cross-site scripting (XSS) attacks.
CVE-2019-9647 has a severity value of 6.1, which is considered medium.
CVE-2019-9647 affects Gila CMS 1.9.1 by allowing attackers to execute malicious JavaScript code on the affected website.
To fix the CVE-2019-9647 vulnerability in Gila CMS 1.9.1, you should update to the latest version of the CMS or apply the official patch provided by the vendor.
You can find more information about CVE-2019-9647 on the following links: [Packet Storm Security](http://packetstormsecurity.com/files/152153/Gila-CMS-1.9.1-Cross-Site-Scripting.html) and [Gila CMS Blog](https://gilacms.com/blog).