Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:21365
HistoryAug 26, 2019 - 2:47 a.m.

Cross-site Scripting (XSS)

2019-08-2602:47:21
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7

EPSS

0.001

Percentile

29.3%

selectize-plugin-a11y is vulnerable to cross-site scripting (XSS). The vulnerability exists due to improper handling of the msg field which allows a malicious user to inject and execute arbitrary Javascript through it.

EPSS

0.001

Percentile

29.3%