Описание
A vulnerability was found in aandrew-me ytDownloader up to 3.20.2. Affected by this issue is the function createTextNode of the component Error Details Panel. The manipulation results in cross site scripting. The attack may be performed from remote. The vendor was contacted early about this disclosure.
EPSS
Процентиль: 20%
0.00278
Низкий
4.3 Medium
CVSS3
5 Medium
CVSS2
Дефекты
CWE-79
Связанные уязвимости
CVSS3: 4.3
github
4 месяца назад
A vulnerability was found in aandrew-me ytDownloader up to 3.20.2. Affected by this issue is the function createTextNode of the component Error Details Panel. The manipulation results in cross site scripting. The attack may be performed from remote. The vendor was contacted early about this disclosure.
EPSS
Процентиль: 20%
0.00278
Низкий
4.3 Medium
CVSS3
5 Medium
CVSS2
Дефекты
CWE-79