Vulnerabilities > Backdropcms > Backdrop Core > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-08-08 CVE-2019-14770 Cross-site Scripting vulnerability in Backdropcms Backdrop Core
In Backdrop CMS 1.12.x before 1.12.8 and 1.13.x before 1.13.3, some menu links within the administration bar may be crafted to execute JavaScript when the administrator is logged in and uses the search functionality.
4.3