Medium severity5.4NVD Advisory· Published Nov 19, 2021· Updated Jun 17, 2026
CVE-2021-3961
CVE-2021-3961
Description
snipe-it is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
snipe/snipe-itPackagist | < 5.3.2 | 5.3.2 |
Affected products
3unspecified+ 1 more
- (no CPE)range: unspecified
- cpe:2.3:a:snipeitapp:snipe-it:*:*:*:*:*:*:*:*range: <5.3.2
Patches
Vulnerability mechanics
References
4- github.com/snipe/snipe-it/commit/7ce5993f5ae9d713a0955c2fd8e2dff7a7ce886envdPatchThird Party AdvisoryWEB
- huntr.dev/bounties/5987aed5-6613-4937-8a3e-d48009b7da10nvdExploitIssue TrackingPatchThird Party AdvisoryWEB
- github.com/advisories/GHSA-c65v-p733-9796ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2021-3961ghsaADVISORY
News mentions
0No linked articles in our index yet.