Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jrw9-qmpm-pwvq

Опубликовано: 02 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.1

Описание

Cross-Site Request Forgery (CSRF) vulnerability in Realty Candy RealtyCandy IDX Broker Extended allows Stored XSS.This issue affects RealtyCandy IDX Broker Extended: from n/a through 1.5.1.

Cross-Site Request Forgery (CSRF) vulnerability in Realty Candy RealtyCandy IDX Broker Extended allows Stored XSS.This issue affects RealtyCandy IDX Broker Extended: from n/a through 1.5.1.

EPSS

Процентиль: 14%
0.00045
Низкий

7.1 High

CVSS3

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 7.1
nvd
около 1 года назад

Cross-Site Request Forgery (CSRF) vulnerability in Realty Candy RealtyCandy IDX Broker Extended allows Stored XSS.This issue affects RealtyCandy IDX Broker Extended: from n/a through 1.5.1.

EPSS

Процентиль: 14%
0.00045
Низкий

7.1 High

CVSS3

Дефекты

CWE-352