Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jmjm-jmgj-gh38

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Drupal.checkPlain function in Drupal 6.0 only escapes the first instance of a character in ECMAScript, which allows remote attackers to conduct cross-site scripting (XSS) attacks.

The Drupal.checkPlain function in Drupal 6.0 only escapes the first instance of a character in ECMAScript, which allows remote attackers to conduct cross-site scripting (XSS) attacks.

EPSS

Процентиль: 61%
0.00416
Низкий

Дефекты

CWE-79

Связанные уязвимости

ubuntu
больше 17 лет назад

The Drupal.checkPlain function in Drupal 6.0 only escapes the first instance of a character in ECMAScript, which allows remote attackers to conduct cross-site scripting (XSS) attacks.

nvd
больше 17 лет назад

The Drupal.checkPlain function in Drupal 6.0 only escapes the first instance of a character in ECMAScript, which allows remote attackers to conduct cross-site scripting (XSS) attacks.

debian
больше 17 лет назад

The Drupal.checkPlain function in Drupal 6.0 only escapes the first in ...

EPSS

Процентиль: 61%
0.00416
Низкий

Дефекты

CWE-79