Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:26047
HistoryAug 06, 2020 - 4:47 a.m.

CSS Injection

2020-08-0604:47:57
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8
css injection
remote attacker
arbitrary css
attributes.

EPSS

0.001

Percentile

32.7%

chartkick is vulnerable to CSS injection. A remote attacker is able to inject arbitrary CSS without attributes.

EPSS

0.001

Percentile

32.7%