Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-08209
HistoryJan 17, 2022 - 12:00 a.m.

Halo Cross-Site Scripting Vulnerability (CNVD-2022-08209)

2022-01-1700:00:00
China National Vulnerability Database
www.cnvd.org.cn
11
halo
blogging
system
cross-site scripting
vulnerability
validation
client-side
web application
attackers
code execution

EPSS

0.001

Percentile

26.9%

Halo is a personal blogging system for individual developers. Halo suffers from a cross-site scripting vulnerability that stems from the lack of proper validation of client-side data in the WEB application, which could be exploited by attackers to execute client-side code.

EPSS

0.001

Percentile

26.9%

Related for CNVD-2022-08209