Medium severity4.8NVD Advisory· Published May 9, 2019· Updated Jun 17, 2026
CVE-2018-20837
CVE-2018-20837
Description
include/admin/Menu/Ajax.php in Typesetter 5.1 has index.php/Admin/Menu/Ajax?cmd=AddHidden title XSS.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:typesettercms:typesetter:5.1:*:*:*:*:*:*:*
- Typesetter/Typesetterdescription
- Range: <5.1
Patches
Vulnerability mechanics
References
2- github.com/Typesetter/Typesetter/commit/fd637e2919e7f77c498a91a8e9d353f8e12afc9anvdPatchThird Party Advisory
- www.netsparker.com/web-applications-advisories/ns-18-026-reflected-cross-site-scripting-in-typesetter/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.