Количество 2
Количество 2
CVE-2023-22849
An improper neutralization of input during web page generation ('Cross-site Scripting') [CWE-79] vulnerability in Sling App CMS version 1.1.4 and prior may allow an authenticated remote attacker to perform a reflected cross-site scripting (XSS) attack in multiple features. Upgrade to Apache Sling App CMS >= 1.1.6
GHSA-rghh-ghf7-7943
Sling App CMS Cross-site Scripting vulnerability
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-22849 An improper neutralization of input during web page generation ('Cross-site Scripting') [CWE-79] vulnerability in Sling App CMS version 1.1.4 and prior may allow an authenticated remote attacker to perform a reflected cross-site scripting (XSS) attack in multiple features. Upgrade to Apache Sling App CMS >= 1.1.6 | CVSS3: 6.1 | 0% Низкий | около 3 лет назад | |
GHSA-rghh-ghf7-7943 Sling App CMS Cross-site Scripting vulnerability | CVSS3: 6.1 | 0% Низкий | около 3 лет назад |
Уязвимостей на страницу