
CVE-2021-47955 CouchCMS 2.2.1 contains a cross-site scripting vulnerability that allows authenticated attackers to execute arbitrary JavaScript by uploading malicious SVG files thro… https://www.cve.org/CVERecord?id=CVE-2021-47955
Post summary
The text describes an XSS vulnerability in CouchCMS 2.2.1 that enables authenticated users to upload malicious SVGs and run arbitrary JavaScript, but it lacks links to a PoC, exploit tools, or a patch.
