CVE-2024-50810

hopetree izone lts c011b48 contains a Cross Site Scripting (XSS) vulnerability in the article comment function. In \apps\comment\views.py, AddCommintView() does not securely filter user input and renders it directly to the frontend page through templates.
Configurations

No configuration.

History

No history.

Information

Published : 2024-11-08 19:15

Updated : 2026-06-17 08:05


NVD link : CVE-2024-50810

Mitre link : CVE-2024-50810

CVE.ORG link : CVE-2024-50810


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')