Loading HuntDB...

Reflected + Stored XSS - https://discussion.evernote.com

Medium
E
Evernote
Submitted None

Team Summary

Official summary from Evernote

René Kroka found a Reflected and Stored Cross-Site Scripting (XSS) vulnerability in the Invision Community forums software used by Evernote. Invision Community fixed this issue in release 4.4.9.1 (https://invisioncommunity.com/release-notes/4491-r91/).

Reported by renekroka

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Submitted

Weakness

Cross-site Scripting (XSS) - Reflected