1 results (0.004 seconds)

CVSS: 6.1EPSS: 0%CPEs: 1EXPL: 0

A vulnerability has been found in fossology and classified as problematic. This vulnerability affects unknown code. The manipulation of the argument sql/VarValue leads to cross site scripting. The attack can be initiated remotely. The patch is identified as 8e0eba001662c7eb35f045b70dd458a4643b4553. • https://github.com/fossology/fossology/commit/8e0eba001662c7eb35f045b70dd458a4643b4553 https://github.com/fossology/fossology/pull/2356 https://vuldb.com/?ctiid.217426 https://vuldb.com/?id.217426 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •