Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3q6h-q44p-xw88

Опубликовано: 11 мая 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.3

Описание

Angle brackets (<>) are not considered dangerous characters when inserted into CSS contexts. Templates containing multiple actions separated by a '/' character can result in unexpectedly closing the CSS context and allowing for injection of unexpected HTML, if executed with untrusted input.

Angle brackets (<>) are not considered dangerous characters when inserted into CSS contexts. Templates containing multiple actions separated by a '/' character can result in unexpectedly closing the CSS context and allowing for injection of unexpected HTML, if executed with untrusted input.

EPSS

Процентиль: 20%
0.00065
Низкий

7.3 High

CVSS3

Дефекты

CWE-74
CWE-94

Связанные уязвимости

CVSS3: 7.3
ubuntu
больше 2 лет назад

Angle brackets (<>) are not considered dangerous characters when inserted into CSS contexts. Templates containing multiple actions separated by a '/' character can result in unexpectedly closing the CSS context and allowing for injection of unexpected HTML, if executed with untrusted input.

CVSS3: 7.3
redhat
больше 2 лет назад

Angle brackets (<>) are not considered dangerous characters when inserted into CSS contexts. Templates containing multiple actions separated by a '/' character can result in unexpectedly closing the CSS context and allowing for injection of unexpected HTML, if executed with untrusted input.

CVSS3: 7.3
nvd
больше 2 лет назад

Angle brackets (<>) are not considered dangerous characters when inserted into CSS contexts. Templates containing multiple actions separated by a '/' character can result in unexpectedly closing the CSS context and allowing for injection of unexpected HTML, if executed with untrusted input.

CVSS3: 7.3
msrc
около 2 месяцев назад

Improper sanitization of CSS values in html/template

CVSS3: 7.3
debian
больше 2 лет назад

Angle brackets (<>) are not considered dangerous characters when inser ...

EPSS

Процентиль: 20%
0.00065
Низкий

7.3 High

CVSS3

Дефекты

CWE-74
CWE-94