Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:38505
HistoryDec 16, 2022 - 2:14 a.m.

Cross-Site Scripting (XSS)

2022-12-1602:14:53
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6
cross-site scripting
org.wso2.carbon.registry
javascript injection

0.001 Low

EPSS

Percentile

38.2%

org.wso2.carbon.registry is vulnerable to cross-site scripting. The vulnerability exists due to lack of encoding request parameters in the library which allows an attacker to inject and execute malicious JavaScript.

0.001 Low

EPSS

Percentile

38.2%

Related for VERACODE:38505