Showing 1 vulnerability on this page for Link iframe formatter

Signals CISA KEV Ransomware Nuclei
backdropcms vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

An XSS issue was discovered in the Link iframe formatter module before 1.x-1.1.1 for Backdrop CMS. It doesn't sufficiently sanitize input before displaying results to the screen. This vulnerability is mitigated by the fact that an attacker must have the ability to create content containing an iFrame field.

CWE-79Mar 7, 2025
CVSS6.4v3.1EPSS0.227%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX