Unauthenticated Stored xss

Disclosed: 2016-09-13 19:39:50 By spetr0x To nextcloud
Unknown
Vulnerability Details
Ohio NextCloud-Sec Team! i know this might be out of scope but i thought i should tell you (no lies i thought i'd get more reputation points) out of the words , here what i'm pointing at: Details: ======== [!] Title: Akismet 2.5.0-3.1.4 - Unauthenticated Stored Cross-Site Scripting (XSS) Reference: https://wpvulndb.com/vulnerabilities/8215 Reference: http://blog.akismet.com/2015/10/13/akismet-3-1-5-wordpress/ Reference: https://blog.sucuri.net/2015/10/security-advisory-stored-xss-in-akismet-wordpress-plugin.html Fix: ===== [i] Fixed in: 3.1.5 (PS.) if you think this is out of scope and a waste of time (which i'm sorry about) , mind if you mark it as informative ? i love you all, kind hugs, Mootez
Actions
View on HackerOne
Report Stats
  • Report ID: 168054
  • State: Closed
  • Substate: not-applicable
  • Upvotes: 14
Share this report