Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:25155
HistoryMay 04, 2020 - 5:14 a.m.

Cross-Site Scripting (XSS)

2020-05-0405:14:56
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

0.001 Low

EPSS

Percentile

40.0%

syncope-client-enduser is vulnerable to cross-site scripting (XSS). Lack of sanitization in enduser notifications allow a remote attacker to inject and execute abitrary Javascript in a user’s browser via the successMessage.

0.001 Low

EPSS

Percentile

40.0%

Related for VERACODE:25155