Reflected cross-site scripting (XSS) In dolibarr/dolibarr
Description
Dolibarr ERP and CRM contain XSS Vulnerability Dolibarr 11.0 allows XSS via the joinfiles, topic, or code parameter, or the HTTP Referer header.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
packagist | 11.0.1 |
Aliases
1. 2. 3. 4.
References
1. 2.