Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:25929
HistoryJul 22, 2020 - 1:15 a.m.

Cross-site Scripting (XSS)

2020-07-2201:15:03
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12
cross-site scripting
artemis-plugin
brokerdiagram.js
vulnerability
sanitized
software

EPSS

0.005

Percentile

77.4%

artemis-plugin is vulnerable to cross-site scripting (XSS). The vulnerability exists as the values of destinationName, consumerId, consumer.connectionID, broker.brokerId, queueName, addressName in js/brokerDiagram.js is not sanitized.

EPSS

0.005

Percentile

77.4%