Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:22794
HistoryMar 26, 2020 - 6:48 a.m.

Cross-Site Scripting (XSS)

2020-03-2606:48:55
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
5

0.001 Low

EPSS

Percentile

22.7%

github.com/hashicorp/nomad is vulnerable to cross-site scripting (XSS). An attacker is able to inject and execute JavaScript in a user’s browser via a malicious workload in the cluster. The user’s browser executes the file when it is displayed in its raw form from the API or UI.

0.001 Low

EPSS

Percentile

22.7%