Executive brief
Firefly III vulnerable to image-based stored XSS
Affected products
- Packagist grumpydictator/firefly-iii
Junglewise Threat Intelligence
CVE-2019-13647 · Severity: low · CVSS 3 · Published 2022-05-24
Technologies: grumpydictator/firefly-iii (Packagist). Vendors: Packagist.
Firefly III vulnerable to image-based stored XSS