Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:40448
HistoryMay 10, 2023 - 12:28 a.m.

Stored Cross-Site Scripting (XSS)

2023-05-1000:28:30
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
17
stored cross-site scripting
apache_airflow
xss attacks
html elements
malicious javascript
application server

EPSS

0.001

Percentile

41.4%

apache_airflow is vulnerable to Stored Cross-Site Scripting (XSS) attacks. The library uses template literals to construct html elements, which allows an attacker to execute malicious JavaScript on victim’s browser through XSS payloads stored on the application server.

EPSS

0.001

Percentile

41.4%

Related for VERACODE:40448