Lucene search

K
osvGoogleOSV:GHSA-M396-2X3H-V3V4
HistoryMay 24, 2022 - 5:21 p.m.

Dolibarr reflected cross-site scripting (XSS) vulnerability

2022-05-2417:21:18
Google
osv.dev
3
dolibarr
xss
vulnerability
public/notice.php
transphrase
transkey
remote attackers
web script
html

AI Score

5.8

Confidence

High

EPSS

0.001

Percentile

45.3%

A reflected cross-site scripting (XSS) vulnerability in Dolibarr 11.0.4 and below allows remote attackers to inject arbitrary web script or HTML into public/notice.php (related to transphrase and transkey).

AI Score

5.8

Confidence

High

EPSS

0.001

Percentile

45.3%

Related for OSV:GHSA-M396-2X3H-V3V4