CVE-2021-27909: XSS vulnerability on password reset page
Impact For Mautic versions prior to 3.3.4, there is an XSS vulnerability on Mautic's password reset page where a vulnerable parameter, "bundle," in the URL could allow an attacker to execute Javascript code. The attacker would be required to convince or trick the target into clicking a password reset URL with the vulnerable parameter utilized.
Patches
Upgrade to 3.3.4 or 4.0.0
Workarounds
No
References
https://github.com/mautic/mautic/releases/tag/3.3.4 https://github.com/mautic/mautic/releases/tag/4.0.0
For more information If you have any questions or comments about this advisory: Email us at security@mautic.org
Other sources
For Mautic versions prior to 3.3.4/4.0.0, there is an XSS vulnerability on Mautic's password reset page where a vulnerable parameter, "bundle," in the URL could allow an attacker to execute Javascript code. The attacker would be required to convince or trick the target into clicking a password reset URL with the vulnerable parameter utilized.
— MITRE
XSS vulnerability on password reset page
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2021-27909?
CVE-2021-27909 is classified as a Cross-Site Scripting (XSS) vulnerability affecting Mautic versions prior to 3.3.4.
How do I fix CVE-2021-27909?
To remediate CVE-2021-27909, upgrade to Mautic version 3.3.4 or later.
What versions of Mautic are affected by CVE-2021-27909?
Mautic versions 3.3.0 to 3.3.4 and earlier are affected by CVE-2021-27909.
What is the impact of CVE-2021-27909?
The impact of CVE-2021-27909 allows an attacker to execute JavaScript code by tricking a user into accessing a malicious URL.
Is CVE-2021-27909 still a risk if I'm using a version above 3.3.4?
No, if you are using Mautic version 3.3.4 or higher, CVE-2021-27909 is not a risk.