Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:40145
HistoryApr 18, 2023 - 5:31 a.m.

Cross-Site Scripting (XSS)

2023-04-1805:31:10
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7
cross-site scripting
sanitization
cookie theft
unauthorized access

EPSS

0.001

Percentile

28.9%

pimcore/perspective-editor is vulnerable to Cross-Site Scripting (XSS). The vulnerability is due to a lack of sanitization when adding a perspective name, which allows an attacker to steal a users cookie and gaining unauthorized access to that user’s account.

EPSS

0.001

Percentile

28.9%

Related for VERACODE:40145