Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:32938
HistoryNov 12, 2021 - 12:12 p.m.

Cross-Site Scripting (XSS)

2021-11-1212:12:52
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7
cross-site scripting
xss
vulnerable
object details
payloads
onpointermove
body element

EPSS

0.001

Percentile

50.1%

dolibarr/dolibarr is vulnerable to cross-site scripting (XSS). The vulnerability exists in object details that allow XSS payloads in the onpointermove attribute of a BODY element.

EPSS

0.001

Percentile

50.1%