Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gvvg-xf8x-hr96

Опубликовано: 14 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 8.5

Описание

ColdFusion is affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulnerability to inject malicious scripts into a web page, potentially gaining elevated access or control over the victim's account or session. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.

ColdFusion is affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulnerability to inject malicious scripts into a web page, potentially gaining elevated access or control over the victim's account or session. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.

EPSS

Процентиль: 95%
0.08601
Низкий

8.5 High

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 8.5
nvd
16 дней назад

ColdFusion is affected by a reflected Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this vulnerability to inject malicious scripts into a web page, potentially gaining elevated access or control over the victim's account or session. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.

EPSS

Процентиль: 95%
0.08601
Низкий

8.5 High

CVSS3

Дефекты

CWE-79