Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fgc7-88p2-vwpp

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In OpenMRS 2.9 and prior, the UI Framework Error Page reflects arbitrary, user-supplied input back to the browser, which can result in XSS. Any page that is able to trigger a UI Framework Error is susceptible to this issue.

In OpenMRS 2.9 and prior, the UI Framework Error Page reflects arbitrary, user-supplied input back to the browser, which can result in XSS. Any page that is able to trigger a UI Framework Error is susceptible to this issue.

EPSS

Процентиль: 55%
0.00328
Низкий

Связанные уязвимости

CVSS3: 6.1
nvd
почти 6 лет назад

In OpenMRS 2.9 and prior, the UI Framework Error Page reflects arbitrary, user-supplied input back to the browser, which can result in XSS. Any page that is able to trigger a UI Framework Error is susceptible to this issue.

EPSS

Процентиль: 55%
0.00328
Низкий