Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:20456
HistoryJun 06, 2019 - 8:24 a.m.

Cross-site Scripting (XSS)

2019-06-0608:24:30
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

0.001 Low

EPSS

Percentile

31.6%

HAPI FHIR TestPage Overlay is vulnerable to cross-site scripting (XSS). The parameters passed through the HTTP request to be displayed in a form page are not sanitized, allowing an attacker to inject a malicious script.

CPENameOperatorVersion
hapi fhir testpage overlayle3.7.0

0.001 Low

EPSS

Percentile

31.6%