First published: Sun Aug 11 2024(Updated: )
A vulnerability classified as problematic was found in Gila CMS 1.10.9. This vulnerability affects unknown code of the file /cm/update_rows/page?id=2 of the component HTTP POST Request Handler. The manipulation of the argument content leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Tina Tinacms | =1.10.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-7657 is classified as problematic with potential implications for security.
To mitigate CVE-2024-7657, it is recommended to sanitize user inputs and implement proper validation in the affected HTTP POST request handler.
CVE-2024-7657 is a cross site scripting (XSS) vulnerability.
CVE-2024-7657 affects Gila CMS version 1.10.9.
The vulnerability is found in the HTTP POST Request Handler of Gila CMS.