Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:22023
HistoryNov 27, 2019 - 3:19 a.m.

Cross-site Scripting (XSS)

2019-11-2703:19:43
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14

EPSS

0.001

Percentile

21.7%

dolibarr/dolibarr is vulnerable to cross-site scripting (XSS). The vulnerability exists as it is possible to upload a SVG with a XSS payload and cause the script to be executed when rendered in viewimage.php.

EPSS

0.001

Percentile

21.7%