CVE-2021-36739 | Apache Pluto 3.1.0 MVCBean JSP Portlet first name/last name cross site scripting
A vulnerability was found in Apache Pluto 3.1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the component MVCBean JSP Portlet. The manipulation of the argument first name/last name leads to cross site scripting.
This vulnerability is handled as CVE-2021-36739. The attack may be launched remotely. There is no exploit available.