Moderate severityNVD Advisory· Published Nov 10, 2021· Updated Aug 4, 2024
CVE-2021-43561
CVE-2021-43561
Description
An XSS issue was discovered in the google_for_jobs (aka Google for Jobs) extension before 1.5.1 and 2.x before 2.1.1 for TYPO3. The extension fails to properly encode user input for output in HTML context. A TYPO3 backend user account is required to exploit the vulnerability.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
pegasus/google-for-jobsPackagist | < 1.5.1 | 1.5.1 |
pegasus/google-for-jobsPackagist | >= 2.0.0, < 2.1.1 | 2.1.1 |
Affected products
2- TYPO3/Google for Jobsdescription
Patches
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- github.com/advisories/GHSA-hfm8-2q22-h7hvghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2021-43561ghsaADVISORY
- typo3.org/security/advisory/typo3-ext-sa-2021-015ghsax_refsource_MISCWEB
News mentions
0No linked articles in our index yet.