This article is a part of our Vulnerability Database (back to index)

Cross-site Scripting occurrences in Sexstatic

XSS in sexstatic <=0.6.2 causes HTML injection in directory name(s) leads to Stored XSS when malicious file is embed with