CVE-2021-32470: XSS
Published May 7, 2021
·Updated
Craft CMS before 3.6.13 has an XSS vulnerability.
Affected Software
2 affected componentsFixes available
composer/craftcms/cms<3.6.13
3.6.13
Craft CMS<3.6.13
Remediation
Event History
May 7, 2021
CVE Published
via MITRE·05:02 PM
Data Sourced
via MITRE·05:02 PM
Description
Mar 18, 2022
Advisory Published
05:53 PM
Frequently Asked Questions
1
What is CVE-2021-32470?
CVE-2021-32470 is an XSS vulnerability in Craft CMS before version 3.6.13.
2
How severe is CVE-2021-32470?
CVE-2021-32470 has a severity rating of 6.1 (medium).
3
Which software versions are affected by CVE-2021-32470?
Craft CMS versions before 3.6.13 are affected by CVE-2021-32470.
4
How can I fix CVE-2021-32470?
To fix CVE-2021-32470, update Craft CMS to version 3.6.13 or newer.
5
Where can I find more information about CVE-2021-32470?
More information about CVE-2021-32470 can be found on the NIST website and the Craft CMS GitHub repository.