Vulnerability Database
Blog
FAQ
Docs
CVE-2019-16148
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2019-16148
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2019-16148.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2019-16148
Aliases
GHSA-q8wc-9xvp-g3c3
Published
2019-09-09T13:15:11Z
Modified
2025-01-08T05:47:15.652982Z
Severity
6.1 (Medium)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
CVSS Calculator
Summary
[none]
Details
Sakai through 12.6 allows XSS via a chat user name.
References
https://github.com/sakaiproject/sakai/pull/6971
Affected packages
Git
/
github.com/sakaiproject/sakai
Affected ranges
Type
GIT
Repo
https://github.com/sakaiproject/sakai
Events
Introduced
0
Unknown introduced commit / All previous commits are affected
Last affected
e1550b1fcfdd9e9fb6528c5ab3c7a46274660b14
Affected versions
12.*
12.0
12.0-rc01
12.0-rc02
12.0-rc03
12.0-rc05
12.1
12.1-rc01
12.1-rc02
12.1-rc03
12.2-rc01
12.3
12.3-rc01
12.4
12.5
12.6
CVE-2019-16148 - OSV