CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.4. Its EPSS score suggests a 12.2% probability of exploitation in the next 30 days.
CVE
CVE-2019-6341
Severity
MEDIUM
CVSS
5.4
EPSS
12.19%
Original NVD Description
In Drupal 7 versions prior to 7.65; Drupal 8.6 versions prior to 8.6.13;Drupal 8.5 versions prior to 8.5.14. Under certain circumstances the File module/subsystem allows a malicious user to upload a file that can trigger a cross-site scripting (XSS) vulnerability.
Related CVEs
Other vulnerabilities affecting the same vendor(s)