Lucene search

K
osvGoogleOSV:CVE-2020-19007
HistoryAug 26, 2020 - 2:15 p.m.

CVE-2020-19007

2020-08-2614:15:10
Google
osv.dev
4

7 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

24.8%

Halo blog 1.2.0 allows users to submit comments on blog posts via /api/content/posts/comments. The javascript code supplied by the attacker will then execute in the victim user’s browser.

7 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

24.8%

Related for OSV:CVE-2020-19007