Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7xp4-3vq7-9563

Опубликовано: 23 апр. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

A Cross-Site Scripting (XSS) vulnerability in the search function of Q4 Inc Investor Relations Platform v5.147.1.2 allows attackers to execute arbitrary Javascript via injecting a crafted payload into the SearchTerm parameter.

A Cross-Site Scripting (XSS) vulnerability in the search function of Q4 Inc Investor Relations Platform v5.147.1.2 allows attackers to execute arbitrary Javascript via injecting a crafted payload into the SearchTerm parameter.

EPSS

Процентиль: 14%
0.00046
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
10 месяцев назад

A Cross-Site Scripting (XSS) vulnerability in the search function of Q4 Inc Investor Relations Platform v5.147.1.2 allows attackers to execute arbitrary Javascript via injecting a crafted payload into the SearchTerm parameter.

EPSS

Процентиль: 14%
0.00046
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79