Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:29226
HistoryFeb 03, 2021 - 5:21 a.m.

Cross-Site Scripting (XSS)

2021-02-0305:21:08
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

0.01 Low

EPSS

Percentile

83.4%

acs-aem-commons is vulnerable to cross-site scripting (XSS). A remote attacker is able to inject and execute arbitrary Javascript in a user’s browser due to insecure handling of invalid JCR characters.

CPENameOperatorVersion
acs aem commons ui.apps packagele4.9.2