Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:29728
HistoryMar 17, 2021 - 2:15 a.m.

Cross-site Scripting (XSS)

2021-03-1702:15:25
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9
vulnerability
silverstripe/queuedjobs
cross-site scripting
createqueuedjobtask
javascript
browser.

EPSS

0.001

Percentile

29.3%

silverstripe/queuedjobs is vulnerable to cross-site scripting. An attacker is able to inject and execute Javascript in a user’s browser through the CreateQueuedJobTask dev task via a malicious URL.

EPSS

0.001

Percentile

29.3%