Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:38283
HistoryNov 29, 2022 - 3:01 a.m.

Cross-site Scripting (XSS)

2022-11-2903:01:51
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
4
cross-site scripting backdrop library sanitization comment section vulnerability

EPSS

0.001

Percentile

44.3%

backdrop/backdrop is vulnerable to cross-site scripting. The vulnerability exists due to the lack of sanitization in the comment section in the library, allowing an attacker to inject and execute malicious javascript.

EPSS

0.001

Percentile

44.3%

Related for VERACODE:38283