Vulnerabilities > Tasmota Project > Tasmota > 6.5.0

DATE CVE VULNERABILITY TITLE RISK
2023-01-09 CVE-2021-36603 Cross-site Scripting vulnerability in Tasmota Project Tasmota 6.5.0
Cross Site Scripting (XSS) in Tasmota firmware 6.5.0 allows remote attackers to inject JavaScript code via a crafted string in the field "Friendly Name 1".
network
low complexity
tasmota-project CWE-79
6.1