CVE-2021-20654: XSS
Published Feb 10, 2021
·Updated
Wekan, open source kanban board system, between version 3.12 and 4.11, is vulnerable to multiple stored cross-site scripting. This is named 'Fieldbleed' in the vendor's site.
Affected Software
1 affected component
Wekan project Wekan>=3.12<=4.11
Event History
Feb 10, 2021
CVE Published
via MITRE·08:50 AM
Data Sourced
via MITRE·08:50 AM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2021-20654 vulnerability?
CVE-2021-20654 is a vulnerability in Wekan, an open-source kanban board system between versions 3.12 and 4.11, that allows for multiple stored cross-site scripting attacks, also known as 'Fieldbleed'.
2
How severe is CVE-2021-20654 vulnerability?
The severity of CVE-2021-20654 vulnerability is rated as medium with a CVSS score of 5.4.
3
What is the affected software by CVE-2021-20654?
The affected software by CVE-2021-20654 is Wekan open-source kanban board system versions between 3.12 and 4.11.
4
What is the CWE associated with CVE-2021-20654?
The CWE associated with CVE-2021-20654 is CWE-79.