Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:34991
HistoryApr 06, 2022 - 9:43 a.m.

Cross Site Scripting (XSS)

2022-04-0609:43:05
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7
cross site scripting
vditor
arbitrary javascript
user input
sanitization

EPSS

0.001

Percentile

34.9%

vditor is vulnerable to cross-site scripting. The vulnerability exists due to the lack of sanitization in user input fields which allows a malicious user to inject and execute arbitrary Javascript.

EPSS

0.001

Percentile

34.9%

Related for VERACODE:34991