Medium severity6.5NVD Advisory· Published Sep 11, 2019· Updated Jun 17, 2026
CVE-2019-15302
CVE-2019-15302
Description
The pad management logic in XWiki labs CryptPad before 3.0.0 allows a remote attacker (who has access to a Rich Text pad with editing rights for the URL) to corrupt it (i.e., cause data loss) via a trivial URL modification.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- XWiki labs/CryptPaddescription
- Range: <3.0.0
Patches
Vulnerability mechanics
References
2- github.com/xwiki-labs/cryptpad/commits/stagingnvdPatchThird Party Advisory
- github.com/xwiki-labs/cryptpad/releases/tag/3.0.0nvdRelease NotesThird Party Advisory
News mentions
0No linked articles in our index yet.