Lucene search

K
osvGoogleOSV:GHSA-PH84-VG7Q-FQQ8
HistoryMay 24, 2022 - 4:54 p.m.

Bolt Cross-site Scripting (XSS) via a title that is mishandled in the system log

2022-05-2416:54:38
Google
osv.dev
5
bolt
cross-site scripting
xss
title
system log

AI Score

5.6

Confidence

High

EPSS

0.001

Percentile

29.3%

Bolt before 3.6.10 has XSS via a title that is mishandled in the system log.

AI Score

5.6

Confidence

High

EPSS

0.001

Percentile

29.3%