Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:36167
HistoryJun 27, 2022 - 2:19 p.m.

Cross-site Scripting (XSS)

2022-06-2714:19:06
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8
cross-site scripting
user input
injection
system vulnerability
software

EPSS

0.001

Percentile

30.0%

parse-url is vulnerable to cross-site scripting. The vulnerability exists due to a lack of sanitization of the user input allowing attacker to inject maliciously crafted script into the system.

EPSS

0.001

Percentile

30.0%