Vulnerabilities > Mendix > Mendixsso > 2.1.1

DATE CVE VULNERABILITY TITLE RISK
2021-01-06 CVE-2020-8160 Cross-site Scripting vulnerability in Mendix Mendixsso 2.0.0/2.1.0/2.1.1
MendixSSO <= 2.1.1 contains endpoints that make use of the openid handler, which is suffering from a Cross-Site Scripting vulnerability via the URL path.
network
mendix CWE-79
4.3