SecLists.Org | Full Disclosure

[KIS-2026-01] Blesta <= 5.13.1 (confirm_url) Reflected Cross-Site Scripting Vulnerability

Posted by Egidio Romano on Feb 04--------------------------------------------------------------------------- Blesta <= 5.13.1 (confirm_url) Reflected Cross-Site Scripting Vulnerability --------------------------------------------------------------------------- [-] Software Link: https://www.blesta.com [-] Affected Versions: All versions from 3.2.0 to 5.13.1. [-] Vulnerability Description: User input passed through the "confirm_url" GET parameter to the...
favicon
seclists.org
seclists.org
favicon
bsky.app
Hacker & Security News on Bluesky @hacker.at.thenote.app