Junglewise Threat Intelligence

CVE-2018-18307: Withdrawn Advisory: AlchemyCMS is vulnerable to stored XSS via the /admin/pictures image field

CVE-2018-18307 · Severity: low · CVSS 3.1 · Published 2022-05-14

Technologies: alchemy_cms (RubyGems). Vendors: RubyGems.

Executive brief

Withdrawn Advisory: AlchemyCMS is vulnerable to stored XSS via the /admin/pictures image field

Affected products

  • RubyGems alchemy_cms