Description
HumHub is an Open Source Enterprise Social Network. Versions below 1.17.4 have a XSS vulnerability in the Meta-Search feature which allows malicious input to be executed in search previews. This issue is fixed in version 1.17.4.
Problem types
CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Product status
References
github.com/...humhub/security/advisories/GHSA-2hgp-33j2-93cc
github.com/humhub/humhub/pull/7814
github.com/humhub/humhub/releases/tag/v1.17.4