Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:21685
HistoryOct 11, 2019 - 7:12 a.m.

Cross-Site Scripting (XSS)

2019-10-1107:12:13
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

EPSS

0.001

Percentile

24.8%

encore/laravel-admin is vulnerable to cross-site scripting (XSS). It is possible because it does not properly handle the “Operation Log” screen, allowing an attacker to inject arbitrary script through Slug or Name parameters on the Roles screen.

EPSS

0.001

Percentile

24.8%

Related for VERACODE:21685