Freeter 1.2.1 contains a persistent cross-site scripting vulnerability that allows attackers to store malicious payloads in custom widget titles and files. Attackers can craft malicious files with embedded scripts that execute when victims interact with the application, potentially enabling remote code execution.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-01-16 19:16
Updated : 2026-01-26 15:05
NVD link : CVE-2021-47835
Mitre link : CVE-2021-47835
CVE.ORG link : CVE-2021-47835
JSON object : View
Products Affected
No product.
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
