Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xh63-cv27-942f

Опубликовано: 21 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 5.1

Описание

Reflected Cross-Site Scripting (XSS) vulnerability in Navigate Content Management System. The vulnerability is present in the '/blog' endpoint because user input is not properly sanitized through designed query parameters. This results in unsafe HTML rendering, which could allow a remote attacker to execute JavaScript code in the victim's browser.

Reflected Cross-Site Scripting (XSS) vulnerability in Navigate Content Management System. The vulnerability is present in the '/blog' endpoint because user input is not properly sanitized through designed query parameters. This results in unsafe HTML rendering, which could allow a remote attacker to execute JavaScript code in the victim's browser.

EPSS

Процентиль: 27%
0.00343
Низкий

5.1 Medium

CVSS4

Дефекты

CWE-79

Связанные уязвимости

nvd
4 месяца назад

Reflected Cross-Site Scripting (XSS) vulnerability in Navigate Content Management System. The vulnerability is present in the '/blog' endpoint because user input is not properly sanitized through designed query parameters. This results in unsafe HTML rendering, which could allow a remote attacker to execute JavaScript code in the victim's browser.

EPSS

Процентиль: 27%
0.00343
Низкий

5.1 Medium

CVSS4

Дефекты

CWE-79