Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:40573
HistoryMay 17, 2023 - 9:35 a.m.

Cross-Site Scripting (XSS)

2023-05-1709:35:58
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
3
cross-site scripting
xss
javascript
vulnerable software
browser

EPSS

0.001

Percentile

34.5%

alextselegidis/easyappointments is vulnerable to Cross-Site Scripting (XSS). The vulnerability is due to a lack of sanitization in the legal settings, service names, and category names of the booking page, which allows an attacker to inject and execute arbitrary JavaScript into the browser.

EPSS

0.001

Percentile

34.5%