Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:7845
HistoryNov 20, 2018 - 1:23 a.m.

Cross-Site Scripting (XSS)

2018-11-2001:23:35
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11

EPSS

0.001

Percentile

42.8%

validator is vulnerable to cross-site scripting. A remote attacker is able to bypass XSS filters via nested forbidden strings to inject arbitrary Javascript into a victim’s browser to steal session tokens or perform unwanted actions on behalf of the user.

EPSS

0.001

Percentile

42.8%