Lucene search

K
osvGoogleOSV:CVE-2019-14670
HistoryAug 05, 2019 - 8:15 p.m.

CVE-2019-14670

2019-08-0520:15:12
Google
osv.dev
2

5.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

21.4%

Firefly III 4.7.17.3 is vulnerable to stored XSS due to the lack of filtration of user-supplied data in the bill name field. The JavaScript code is executed during rule-from-bill creation.

5.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

21.4%

Related for OSV:CVE-2019-14670