Lucene search

K
osvGoogleOSV:GHSA-FXMX-PFM2-85M2
HistoryJan 21, 2022 - 11:32 p.m.

Cross-site Scripting in Ericsson CodeChecker

2022-01-2123:32:32
Google
osv.dev
9
cross-site scripting
ericsson
codechecker
remote attackers
web script
html
json data
api
software

EPSS

0.002

Percentile

52.5%

In Ericsson CodeChecker prior to 6.18.2, a Stored Cross-site scripting (XSS) vulnerability in the comments component of the reports viewer allows remote attackers to inject arbitrary web script or HTML via the POST JSON data of the /CodeCheckerService API.

EPSS

0.002

Percentile

52.5%

Related for OSV:GHSA-FXMX-PFM2-85M2