uberswe / beubo

Beubo is a free, simple, and minimal CMS with unlimited extensibility using plugins
MIT License
21 stars 4 forks source link

XSS vullnerabilities #49

Closed uberswe closed 3 years ago

uberswe commented 3 years ago

Currently most forms in Beubo which has input which is later echoed back to the user is vulnerable to XSS. This needs to be fixed,