Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7c55-fjfv-79jq

Опубликовано: 03 окт. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.3

Описание

A stored XSS vulnerability has been found on BuddyBoss Platform affecting version 2.2.9. This vulnerability allows an attacker to store a malicious javascript payload via POST request when sending an invitation.

A stored XSS vulnerability has been found on BuddyBoss Platform affecting version 2.2.9. This vulnerability allows an attacker to store a malicious javascript payload via POST request when sending an invitation.

EPSS

Процентиль: 39%
0.00177
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.3
nvd
больше 2 лет назад

A stored XSS vulnerability has been found on BuddyBoss Platform affecting version 2.2.9. This vulnerability allows an attacker to store a malicious javascript payload via POST request when sending an invitation.

EPSS

Процентиль: 39%
0.00177
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-79