CVE-2020-5810
15Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 66%
exploitation probability
66%top 1% of all CVEs
observed exploitation
nono source reports it
A stored XSS vulnerability exists in Umbraco CMS <= 8.9.1 or current. An authenticated user authorized to upload media can upload a malicious .svg file which act as a stored XSS payload.
Affected products
n/a · Umbraco CMS