Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f93v-4jq6-g3hj

Опубликовано: 02 апр. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

HCL Compass is vulnerable to Cross-Origin Resource Sharing (CORS). This vulnerability can allow an unprivileged remote attacker to trick a legitimate user into accessing a special resource and executing a malicious request.

HCL Compass is vulnerable to Cross-Origin Resource Sharing (CORS). This vulnerability can allow an unprivileged remote attacker to trick a legitimate user into accessing a special resource and executing a malicious request.

EPSS

Процентиль: 71%
0.00686
Низкий

8.8 High

CVSS3

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 9.6
nvd
почти 3 года назад

HCL Compass is vulnerable to Cross-Origin Resource Sharing (CORS). This vulnerability can allow an unprivileged remote attacker to trick a legitimate user into accessing a special resource and executing a malicious request.

EPSS

Процентиль: 71%
0.00686
Низкий

8.8 High

CVSS3

Дефекты

CWE-352