Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8xf5-j5w3-2jx2

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Cross-site scripting (XSS) vulnerability in Comment.php in Serendipity 0.7 beta1, and possibly other versions before 0.7-beta3, allows remote attackers to inject arbitrary HTML and PHP code via the (1) email or (2) username field.

Cross-site scripting (XSS) vulnerability in Comment.php in Serendipity 0.7 beta1, and possibly other versions before 0.7-beta3, allows remote attackers to inject arbitrary HTML and PHP code via the (1) email or (2) username field.

EPSS

Процентиль: 72%
0.00721
Низкий

Связанные уязвимости

nvd
больше 20 лет назад

Cross-site scripting (XSS) vulnerability in Comment.php in Serendipity 0.7 beta1, and possibly other versions before 0.7-beta3, allows remote attackers to inject arbitrary HTML and PHP code via the (1) email or (2) username field.

debian
больше 20 лет назад

Cross-site scripting (XSS) vulnerability in Comment.php in Serendipity ...

EPSS

Процентиль: 72%
0.00721
Низкий