Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:25201
HistoryMay 08, 2020 - 4:39 a.m.

Cross-Site Scripting (XSS)

2020-05-0804:39:53
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
5

EPSS

0.001

Percentile

34.3%

ssddanbrown/bookstack is vulnerable to cross-site scripting (XSS). Lack of validation and sanitization allows a remote attacker to inject and execute arbitrary Javascript in a user’s browser via the comments.

EPSS

0.001

Percentile

34.3%

Related for VERACODE:25201