Posted by Egidio Romano on Feb 04
—————————————————————————
Blesta <= 5.13.1 (confirm_url) Reflected Cross-Site Scripting Vulnerability
—————————————————————————
[-] Software Link:
[-] Affected Versions:
All versions from 3.2.0 to 5.13.1.
[-] Vulnerability Description:
User input passed through the “confirm_url” GET parameter to the…
– Read More – Full Disclosure



