Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v65q-q3ch-5jrg

Опубликовано: 02 окт. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

FlatPress v1.3 is vulnerable to Cross Site Scripting (XSS). An attacker can inject malicious JavaScript code into the "Add New Entry" section, which allows them to execute arbitrary code in the context of a victim's web browser.

FlatPress v1.3 is vulnerable to Cross Site Scripting (XSS). An attacker can inject malicious JavaScript code into the "Add New Entry" section, which allows them to execute arbitrary code in the context of a victim's web browser.

EPSS

Процентиль: 89%
0.04691
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 5.4
nvd
больше 1 года назад

FlatPress v1.3 is vulnerable to Cross Site Scripting (XSS). An attacker can inject malicious JavaScript code into the "Add New Entry" section, which allows them to execute arbitrary code in the context of a victim's web browser.

CVSS3: 5.4
debian
больше 1 года назад

FlatPress v1.3 is vulnerable to Cross Site Scripting (XSS). An attacke ...

EPSS

Процентиль: 89%
0.04691
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79