Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:7229
HistoryAug 03, 2018 - 5:05 a.m.

Cross-site Scripting (XSS)

2018-08-0305:05:20
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7

EPSS

0.001

Percentile

23.5%

paypal/invoice-sdk-php is vulnerable to cross-site scripting (XSS) attacks. The vulnerability exists due to the lack of sanitization of permToken and allows arbitrary scripts to be rendered in samples/permissions.php.

EPSS

0.001

Percentile

23.5%

Related for VERACODE:7229