OSV 1.4.0 · github-reviewed · 修改于 2020-09-01 02:41
发布时间
2019-06-14 02:59
GitHub 审查时间
2019-06-14 02:49
NVD 发布时间
—
源文件
advisories/github-reviewed/2019/06/GHSA-hpfq-8wx8-cgqw/GHSA-hpfq-8wx8-cgqw.json
Versions of ids-enterprise prior to 4.18.2 are vulnerable to Cross-Site Scripting (XSS). The modal component fails to sanitize input to the title attribute, which may allow attackers to execute arbitrary JavaScript.
Upgrade to version 4.18.2 or later