Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xv52-32q3-qg5c

Опубликовано: 04 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 5.1

Описание

A HTML Injection vulnerability was identified in Issuetrak version 17.1 that could be triggered by an authenticated user. HTML markup could be added to comments of tickets, which when submitted will render in the emails sent to all users on that ticket.

A HTML Injection vulnerability was identified in Issuetrak version 17.1 that could be triggered by an authenticated user. HTML markup could be added to comments of tickets, which when submitted will render in the emails sent to all users on that ticket.

EPSS

Процентиль: 34%
0.0014
Низкий

5.1 Medium

CVSS4

Дефекты

CWE-79

Связанные уязвимости

nvd
около 1 года назад

A HTML Injection vulnerability was identified in Issuetrak version 17.1 that could be triggered by an authenticated user. HTML markup could be added to comments of tickets, which when submitted will render in the emails sent to all users on that ticket.

EPSS

Процентиль: 34%
0.0014
Низкий

5.1 Medium

CVSS4

Дефекты

CWE-79