Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9gqj-ppv2-f2hq

Опубликовано: 17 мая 2022
Источник: github
Github: Прошло ревью

Описание

Cross-site Scripting in SmartyException

Cross-site scripting (XSS) vulnerability in the SmartyException class in Smarty (aka smarty-php) before 3.1.12 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors that trigger a Smarty exception.

Пакеты

Наименование

smarty/smarty

composer
Затронутые версииВерсия исправления

< 3.1.12

3.1.12

EPSS

Процентиль: 68%
0.0057
Низкий

Дефекты

CWE-79

Связанные уязвимости

ubuntu
больше 13 лет назад

Cross-site scripting (XSS) vulnerability in the SmartyException class in Smarty (aka smarty-php) before 3.1.12 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors that trigger a Smarty exception.

nvd
больше 13 лет назад

Cross-site scripting (XSS) vulnerability in the SmartyException class in Smarty (aka smarty-php) before 3.1.12 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors that trigger a Smarty exception.

debian
больше 13 лет назад

Cross-site scripting (XSS) vulnerability in the SmartyException class ...

EPSS

Процентиль: 68%
0.0057
Низкий

Дефекты

CWE-79