Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pxh8-3c47-gmr6

Опубликовано: 07 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

An attacker with access to the web application that has the vulnerable software could introduce arbitrary JavaScript by injecting a cross-site scripting payload into the "autorefresh" parameter.

An attacker with access to the web application that has the vulnerable software could introduce arbitrary JavaScript by injecting a cross-site scripting payload into the "autorefresh" parameter.

EPSS

Процентиль: 27%
0.00097
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 5.4
nvd
около 2 лет назад

An attacker with access to the web application that has the vulnerable software could introduce arbitrary JavaScript by injecting a cross-site scripting payload into the "autorefresh" parameter.

EPSS

Процентиль: 27%
0.00097
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79