First published: Fri Aug 13 2021(Updated: )
The miniorange_saml (aka Miniorange Saml) extension before 1.4.3 for TYPO3 allows XSS.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
MiniOrange SAML | <1.4.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2021-36785.
The severity of CVE-2021-36785 is medium with a severity value of 5.4.
The Miniorange Saml extension before 1.4.3 for TYPO3 is affected by this vulnerability.
The Common Vulnerability Enumeration (CWE) ID for this vulnerability is CWE-79.
Update the Miniorange Saml extension to version 1.4.3 or later to fix this vulnerability.