CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.1. See the original NVD description below for full technical details.
CVE
CVE-2021-24435
Severity
MEDIUM
CVSS
6.1
EPSS
1.79%
Original NVD Description
The iframe-font-preview.php file of the titan-framework does not properly escape the font-weight and font-family GET parameters before outputting them back in an href attribute, leading to Reflected Cross-Site Scripting issues
Related CVEs
Other vulnerabilities affecting the same vendor(s)