Ilya Kreymer

1 exploit Active since Aug 2021
CVE-2021-39286 WRITEUP MEDIUM WRITEUP
pywb < 2.6.0 - Cross-Site Scripting via Jinja2 Template Autoescaping Bypass
Webrecorder pywb before 2.6.0 allows XSS because it does not ensure that Jinja2 templates are autoescaped.
CVSS 6.1