Описание
Malicious HTML content could be injected into the page pretix shows when redirection to an untrusted page occurs. Since this page has a Content-Security-Policy, this can mainly be used for phishing purposes.
EPSS
Процентиль: 16%
0.00248
Низкий
Дефекты
CWE-80
Связанные уязвимости
github
2 месяца назад
Malicious HTML content could be injected into the page pretix shows when redirection to an untrusted page occurs. Since this page has a Content-Security-Policy, this can mainly be used for phishing purposes.
EPSS
Процентиль: 16%
0.00248
Низкий
Дефекты
CWE-80