Lucene search

K
githubGitHub Advisory DatabaseGHSA-36GF-VPJ2-J42W
HistoryJun 24, 2024 - 9:30 a.m.

Cross site scripting in Apache JSPWiki

2024-06-2409:30:53
CWE-79
GitHub Advisory Database
github.com
4
apache
jspwiki
cross site scripting

AI Score

6

Confidence

High

XSS in Upload page in Apache JSPWiki 2.12.1 and priors allows the attacker to execute javascript in the victim’s browser and get some sensitive information about the victim. Apache JSPWiki users should upgrade to 2.12.2 or later.

Affected configurations

Vulners
Node
org.apache.jspwikijspwiki-mainRange<2.12.2
VendorProductVersionCPE
org.apache.jspwikijspwiki-main*cpe:2.3:a:org.apache.jspwiki:jspwiki-main:*:*:*:*:*:*:*:*

AI Score

6

Confidence

High

Related for GHSA-36GF-VPJ2-J42W