Lucene search

K
osvGoogleOSV:GHSA-5H5R-23R4-M87H
HistorySep 01, 2020 - 4:04 p.m.

Cross-Site Scripting in gitbook

2020-09-0116:04:39
Google
osv.dev
7

0.001 Low

EPSS

Percentile

33.1%

Affected versions of gitbook do not properly sanitize user input outside of backticks, which may result in cross-site scripting in the online reader.

Recommendation

Update to version 3.2.2 or later.

CPENameOperatorVersion
gitbooklt3.2.2

0.001 Low

EPSS

Percentile

33.1%

Related for OSV:GHSA-5H5R-23R4-M87H