Medium severity6.1NVD Advisory· Published Mar 27, 2021· Updated Jun 17, 2026
CVE-2021-29271
CVE-2021-29271
Description
remark42 before 1.6.1 allows XSS, as demonstrated by "Locator: Locator{URL:" followed by an XSS payload. This is related to backend/app/store/comment.go and backend/app/store/service/service.go.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- remark42/remark42description
Patches
Vulnerability mechanics
References
2- github.com/umputun/remark42/compare/v1.6.0...v1.6.1nvdPatchThird Party Advisory
- vuln.ryotak.me/advisories/19nvdThird Party Advisory
News mentions
0No linked articles in our index yet.