Medium severity6.1NVD Advisory· Published Dec 31, 2019· Updated Jun 17, 2026
CVE-2019-9554
CVE-2019-9554
Description
In the 3.1.12 Pro version of Craft CMS, XSS has been discovered in the header insertion field when adding source code at an s/admin/entries/news/new URI.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
2- packetstormsecurity.com/files/151944/Craft-CMS-3.1.12-Pro-Cross-Site-Scripting.htmlnvdExploitThird Party AdvisoryVDB Entry
- www.exploit-db.com/exploits/46496nvdExploitThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.