Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A cross-site scripting (XSS) vulnerability in the TextBlockModule.php component of hortusfox-web v4.4 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the name parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
HortusFox 安全漏洞
Vulnerability Description
HortusFox是HortusFox公司的一个免费且开源的自托管植物管理器系统。 HortusFox v4.4版本存在安全漏洞,该漏洞源于TextBlockModule.php组件对name参数输入验证不足,可能导致跨站脚本攻击。
CVSS Information
N/A
Vulnerability Type
N/A