Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:34036
HistoryFeb 07, 2022 - 10:33 p.m.

Cross-site Scripting (XSS)

2022-02-0722:33:22
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7
cross-site scripting
spip
software vulnerability
malicious javascript
svg file

EPSS

0.001

Percentile

25.8%

spip is vulnerable to cross-site scripting. An attacker can inject and execute malicious javascript through the malicious SVG file.