Lucene search

K
osvGoogleOSV:GHSA-QMWF-J7G7-F5JW
HistoryJun 05, 2024 - 3:02 p.m.

Cross-Site Scripting in third party library mso/idna-convert

2024-06-0515:02:40
Google
osv.dev
1
cross-site scripting
third party library
vendor directory
composer
web folder
document root
typo3_src
software

7 High

AI Score

Confidence

Low

Make sure to not expose the vendor directory to the publicly accessible document root. In composer managed installation, make sure to configure a dedicated web folder. In general it is recommended to not expose the complete typo3_src sources folder in the document root.

7 High

AI Score

Confidence

Low