VYPR
Medium severity6.1NVD Advisory· Published Jul 19, 2019· Updated Jun 17, 2026

CVE-2019-13970

CVE-2019-13970

Description

In antSword before 2.1.0, self-XSS in the database configuration leads to code execution via modules/database/asp/index.js, modules/database/custom/index.js, modules/database/index.js, or modules/database/php/index.js.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
antswordnpm
< 2.1.02.1.0

Affected products

3

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.