Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-70090
HistoryMay 08, 2022 - 12:00 a.m.

SpringBootMovie Cross-Site Scripting Vulnerability

2022-05-0800:00:00
China National Vulnerability Database
www.cnvd.org.cn
13
springbootmovie
cross-site scripting
vulnerability
client-side execution
website

EPSS

0.001

Percentile

24.8%

SpringBootMovie, a Spring Boot-based movie website, is vulnerable to a cross-site scripting vulnerability in SpringBootMovie version 1.2 and earlier, which stems from a failure to filter parameters when adding movie names. An attacker could exploit this vulnerability to execute JavaScript code on the client side.

EPSS

0.001

Percentile

24.8%

Related for CNVD-2022-70090