Описание
phpxmlrpc/extra XSS in class documenting_xmlrpc_server
Versions preceding 0.6.1 of the phpxmlrpc/extras project are susceptible to a Cross-Site Scripting (XSS) vulnerability. This vulnerability exists within the class documenting_xmlrpc_server when processing the GET methodName parameter.
Пакеты
Наименование
phpxmlrpc/extras
composer
Затронутые версииВерсия исправления
< 0.6.1
0.6.1
6.1 Medium
CVSS3
Дефекты
CWE-80
6.1 Medium
CVSS3
Дефекты
CWE-80