Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:7328
HistoryAug 20, 2018 - 7:17 a.m.

Cross-Site Scripting (XSS)

2018-08-2007:17:16
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
21

EPSS

0.005

Percentile

77.0%

This is Due to the unescaped quotes in dojox/Grid/DataGrid when editing rows, which would allow an attacker to inject arbitrary HTML and Javascript into a victim’s browser. Which makes dojox vulnerable to cross-site scripting.