Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wg7r-gg2h-7xwx

Опубликовано: 06 окт. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.1

Описание

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Catch Themes Create allows Stored XSS.This issue affects Create: from n/a through 2.9.1.

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Catch Themes Create allows Stored XSS.This issue affects Create: from n/a through 2.9.1.

EPSS

Процентиль: 24%
0.0008
Низкий

5.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 5.1
nvd
больше 1 года назад

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Catch Themes Create allows Stored XSS.This issue affects Create: from n/a through 2.9.1.

EPSS

Процентиль: 24%
0.0008
Низкий

5.1 Medium

CVSS3

Дефекты

CWE-79