Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:35970
HistoryJun 13, 2022 - 7:19 p.m.

Cross-site Scripting (XSS)

2022-06-1319:19:13
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15
firefox
cross-site scripting
vulnerability
html comment tags
injection
system

EPSS

0.001

Percentile

34.6%

firefox is vulnerable to Cross-site Scripting (XSS). The vulnerability exists due to a lack of sanitization of HTML comment tags, resulting in an incongruity with other browsers allowing an attacker to inject maliciously crafted script into the system.