Vulnerabilities (CVE)

Filtered by vendor Hexo-admin Project Subscribe
Filtered by product Hexo-admin
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-17606 1 Hexo-admin Project 1 Hexo-admin 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The Post editor functionality in the hexo-admin plugin versions 2.3.0 and earlier for Node.js is vulnerable to stored XSS via the content of a post.