Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j7m2-p3m3-hv6j

Опубликовано: 27 сент. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 4.1

Описание

In Apollo change requests, comments added by users could contain a javascript URI link that when rendered will result in an XSS that require user interaction.

In Apollo change requests, comments added by users could contain a javascript URI link that when rendered will result in an XSS that require user interaction.

EPSS

Процентиль: 39%
0.00175
Низкий

4.1 Medium

CVSS3

Дефекты

CWE-79
CWE-84

Связанные уязвимости

CVSS3: 4.1
nvd
больше 2 лет назад

In Apollo change requests, comments added by users could contain a javascript URI link that when rendered will result in an XSS that require user interaction.

EPSS

Процентиль: 39%
0.00175
Низкий

4.1 Medium

CVSS3

Дефекты

CWE-79
CWE-84