Количество 2
Количество 2
CVE-2021-44565
почти 4 года назад
A Cross Site Scripting (XSS) vulnerability exists in RosarioSIS before 7.6.1 via the xss_clean function in classes/Security.php, which allows remote malicious users to inject arbitrary JavaScript or HTML. An example of affected components are all Markdown input fields.
CVSS3: 5.4
EPSS: Низкий
GHSA-44cg-qcpr-fwjh
почти 4 года назад
Cross site scripting in francoisjacquet/rosariosis
CVSS3: 5.4
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2021-44565 A Cross Site Scripting (XSS) vulnerability exists in RosarioSIS before 7.6.1 via the xss_clean function in classes/Security.php, which allows remote malicious users to inject arbitrary JavaScript or HTML. An example of affected components are all Markdown input fields. | CVSS3: 5.4 | 0% Низкий | почти 4 года назад | |
GHSA-44cg-qcpr-fwjh Cross site scripting in francoisjacquet/rosariosis | CVSS3: 5.4 | 0% Низкий | почти 4 года назад |
Уязвимостей на страницу
20