Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jw46-grq7-cw4w

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The method and share GET parameters of the Giveaway pages were not sanitised, validated or escaped before being output back in the pages, thus leading to reflected XSS

The method and share GET parameters of the Giveaway pages were not sanitised, validated or escaped before being output back in the pages, thus leading to reflected XSS

EPSS

Процентиль: 94%
0.13939
Средний

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
больше 4 лет назад

The method and share GET parameters of the Giveaway pages were not sanitised, validated or escaped before being output back in the pages, thus leading to reflected XSS

EPSS

Процентиль: 94%
0.13939
Средний

Дефекты

CWE-79