Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6gp6-xj27-g89q

Опубликовано: 10 мая 2023
Источник: github
Github: Прошло ревью
CVSS3: 6.8

Описание

Duplicate Advisory: Cross-site Scripting (XSS) in name field of Custom Reports

Duplicate Advisory

This advisory has been withdrawn because it is a duplicate of GHSA-m6m9-gr85-79vm. This link is maintained to preserve external references.

Original Description

Cross-site Scripting (XSS) - DOM in GitHub repository pimcore/pimcore prior to 10.5.21.

Пакеты

Наименование

pimcore/pimcore

composer
Затронутые версииВерсия исправления

< 10.5.21

10.5.21

6.8 Medium

CVSS3

Дефекты

CWE-79

6.8 Medium

CVSS3

Дефекты

CWE-79