Stored XSS in Freeform Craft Plugin Control Panel – security advisory published #2414
-
How can we help you?Dear Solspace team, I reported and published a security advisory for a stored Cross-Site Scripting (XSS) vulnerability in the Freeform Craft plugin affecting the Control Panel (builder / integrations UI). The advisory has already been published via GitHub Security Advisories and includes:
Advisory link: I’ve opened this discussion to:
Please let me know if you’d like:
Thanks for your time and for maintaining Freeform. Freeform EditionPro Freeform Version<= 5.14.6 Craft Version<= 5.14.6 |
Beta Was this translation helpful? Give feedback.
Replies: 2 comments 2 replies
-
Beta Was this translation helpful? Give feedback.
-
|
@Prav33N-Sec this has been addressed. It's been published and resolved in a fixed version of Freeform (5.14.7+). 🙂 |
Beta Was this translation helpful? Give feedback.
@Prav33N-Sec this has been addressed. It's been published and resolved in a fixed version of Freeform (5.14.7+). 🙂