Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:35962
HistoryJun 13, 2022 - 8:40 a.m.

Cross-Site Scripting (XSS)

2022-06-1308:40:03
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12
intelliants/subrion
xss
vulnerability
blog entry
editing
javascript

EPSS

0.001

Percentile

24.8%

intelliants/subrion is vulnerable to cross-site scripting. The vulnerability exists due to lack of validations when editing a blog entry which allows an attacker to modify the name of the uploaded images and execute arbitrary javascript.

EPSS

0.001

Percentile

24.8%

Related for VERACODE:35962