cve/2021/CVE-2021-25990.md
2024-05-25 21:48:12 +02:00

709 B

CVE-2021-25990

Description

In “ifme”, versions v7.22.0 to v7.31.4 are vulnerable against self-stored XSS in the contacts field as it allows loading XSS payloads fetched via an iframe.

POC

Reference

Github

No PoCs found on GitHub currently.