Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q53q-67p3-fpjw

Опубликовано: 06 фев. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9

Описание

A cross-site scripting (xss) vulnerability exists in the dataset upload functionality of ClearML Enterprise Server 3.22.5-1533. A specially crafted HTTP request can lead to an arbitrary html code. An attacker can send a series of HTTP requests to trigger this vulnerability.

A cross-site scripting (xss) vulnerability exists in the dataset upload functionality of ClearML Enterprise Server 3.22.5-1533. A specially crafted HTTP request can lead to an arbitrary html code. An attacker can send a series of HTTP requests to trigger this vulnerability.

EPSS

Процентиль: 57%
0.00347
Низкий

9 Critical

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 9
nvd
около 1 года назад

A cross-site scripting (xss) vulnerability exists in the dataset upload functionality of ClearML Enterprise Server 3.22.5-1533. A specially crafted HTTP request can lead to an arbitrary html code. An attacker can send a series of HTTP requests to trigger this vulnerability.

EPSS

Процентиль: 57%
0.00347
Низкий

9 Critical

CVSS3

Дефекты

CWE-79