OSV 1.4.0 · github-reviewed · 修改于 2020-09-01 02:41
发布时间
2019-06-14 03:09
GitHub 审查时间
2019-06-14 03:09
NVD 发布时间
—
源文件
advisories/github-reviewed/2019/06/GHSA-49r3-3h96-rwj6/GHSA-49r3-3h96-rwj6.json
Versions of ids-enterprise prior to 4.18.2 are vulnerable to Cross-Site Scripting (XSS). The soho-dropdown component does not properly encode its output and may allow attackers to execute arbitrary JavaScript.
Upgrade to version 4.18.2 or later