Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qp68-3cm6-cf7j

Опубликовано: 17 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 4.7

Описание

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Shopside Software Shopside App allows Cross-Site Scripting (XSS). This issue requires high privileges.This issue affects Shopside App: before 17.02.2025.

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Shopside Software Shopside App allows Cross-Site Scripting (XSS). This issue requires high privileges.This issue affects Shopside App: before 17.02.2025.

EPSS

Процентиль: 22%
0.00073
Низкий

4.7 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 4.7
nvd
5 месяцев назад

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Shopside Software Shopside App allows Cross-Site Scripting (XSS). This issue requires high privileges.This issue affects Shopside App: before 17.02.2025.

EPSS

Процентиль: 22%
0.00073
Низкий

4.7 Medium

CVSS3

Дефекты

CWE-79