CVE-2021-47808 - Cotonti Siena 0.9.19 - 'maintitle' Stored Cross-Site Scripting
CVE ID : CVE-2021-47808
Published : Jan. 15, 2026, 11:25 p.m. | 1 hour, 2 minutes ago
Description : Cotonti Siena 0.9.19 contains a stored cross-site scripting vulnerability in the admin configuration panel's site title parameter. Attackers can inject malicious JavaScript code through the 'maintitle' parameter to execute scripts when administrators view the page.
Severity: 7.2 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Jan. 15, 2026, 11:25 p.m. | 1 hour, 2 minutes ago
Description : Cotonti Siena 0.9.19 contains a stored cross-site scripting vulnerability in the admin configuration panel's site title parameter. Attackers can inject malicious JavaScript code through the 'maintitle' parameter to execute scripts when administrators view the page.
Severity: 7.2 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...