Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h2fm-479p-v37r

Опубликовано: 30 окт. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 9.3

Описание

A Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability allows attackers to run arbitrary javascript via a reflected XSS issue in the search fields.This issue affects Container suse/manager/5.0/x86_64/server:latest: from ? before 5.0.28-150600.3.36.8; SUSE Manager Server LTS 4.3: from ? before 4.3.88-150400.3.113.5.

A Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability allows attackers to run arbitrary javascript via a reflected XSS issue in the search fields.This issue affects Container suse/manager/5.0/x86_64/server:latest: from ? before 5.0.28-150600.3.36.8; SUSE Manager Server LTS 4.3: from ? before 4.3.88-150400.3.113.5.

EPSS

Процентиль: 21%
0.0007
Низкий

9.3 Critical

CVSS4

Дефекты

CWE-80

Связанные уязвимости

nvd
3 месяца назад

A Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability allows attackers to run arbitrary javascript via a reflected XSS issue in the search fields.This issue affects Container suse/manager/5.0/x86_64/server:latest: from ? before 5.0.28-150600.3.36.8; SUSE Manager Server LTS 4.3: from ? before 4.3.88-150400.3.113.5.

EPSS

Процентиль: 21%
0.0007
Низкий

9.3 Critical

CVSS4

Дефекты

CWE-80