Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:24335
HistoryApr 10, 2020 - 12:52 a.m.

Cross-Site Scripting (XSS)

2020-04-1000:52:30
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
22

EPSS

0.14

Percentile

95.7%

firefox is vulnerable to cross-site scripting. A cross-site scripting (XSS) flaw was found in the Firefox x-mac-arabic, x-mac-farsi, and x-mac-hebrew character encodings. Certain characters were converted to angle brackets when displayed. If server-side script filtering missed these cases, it could result in Firefox executing JavaScript code with the permissions of a different website.

References