Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-91161
HistoryApr 21, 2022 - 12:00 a.m.

Selenium Server Cross-Site Request Forgery Vulnerability

2022-04-2100:00:00
China National Vulnerability Database
www.cnvd.org.cn
13
selenium grid
proxy server
cross-site request forgery

EPSS

0.002

Percentile

57.6%

Selenium Grid is an intelligent proxy server for the Selenium community. It can easily run tests in parallel on multiple machines.A cross-site request spoofing vulnerability exists in versions prior to Selenium Server 4, which can be exploited by attackers to spoof malicious requests to trick victims into clicking to perform sensitive actions.

EPSS

0.002

Percentile

57.6%