Headline
GHSA-32fj-r8qw-r8w8: MindsDB Cross-site Scripting vulnerability
A cross-site scripting (XSS) vulnerability exists in all versions of the MindsDB platform, enabling the execution of a JavaScript payload whenever a user enumerates an ML Engine, database, project, or dataset containing arbitrary JavaScript code within the web UI.
MindsDB Cross-site Scripting vulnerability
Moderate severity GitHub Reviewed Published Sep 12, 2024 to the GitHub Advisory Database • Updated Sep 12, 2024
ghsa: Latest News
GHSA-ggmv-j932-q89q: Chall-Manager's HTTP Gateway is vulnerable to DoS due to missing header timeout