Executive brief
Decidim::Admin vulnerable to cross-site scripting (XSS) in the admin panel with QuillJS WYSWYG editor
Affected products
- RubyGems decidim
Junglewise Threat Intelligence
CVE-2024-39910 · Severity: low · CVSS 3.1 · Published 2024-09-16
Technologies: decidim (RubyGems). Vendors: RubyGems.
Decidim::Admin vulnerable to cross-site scripting (XSS) in the admin panel with QuillJS WYSWYG editor