Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x3pg-369x-vc72

Опубликовано: 02 апр. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

HCL Launch is vulnerable to HTML injection. HTML code is stored and included without being sanitized. This can lead to further attacks such as XSS and Open Redirections.

HCL Launch is vulnerable to HTML injection. HTML code is stored and included without being sanitized. This can lead to further attacks such as XSS and Open Redirections.

EPSS

Процентиль: 60%
0.0039
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 4.6
nvd
почти 3 года назад

HCL Launch is vulnerable to HTML injection.  HTML code is stored and included without being sanitized. This can lead to further attacks such as XSS and Open Redirections.

EPSS

Процентиль: 60%
0.0039
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79