5.9 Medium
AI Score
Confidence
High
0.001 Low
EPSS
Percentile
37.3%
TeamPass 2.1.27.36 allows Stored XSS by placing a payload in the username field during a login attempt. When an administrator looks at the log of failed logins, the XSS payload will be executed.
github.com/nilsteampassnet/TeamPass/issues/2688