Vulnerabilities > Netbox > Netbox

DATE CVE VULNERABILITY TITLE RISK
2020-12-31 CVE-2019-25011 Cross-site Scripting vulnerability in Netbox
NetBox through 2.6.2 allows an Authenticated User to conduct an XSS attack against an admin via a GFM-rendered field, as demonstrated by /dcim/sites/add/ comments.
network
low complexity
netbox CWE-79
5.4