Tag
#xss
Wiki comments required additional sanitizing and access restrictions to prevent a stored XSS risk and potential IDOR risk.
The course upload preview contained an XSS risk for users uploading unsafe data.
ID numbers displayed in the quiz grading report required additional sanitizing to prevent a stored XSS risk.
The CSV grade import method contained an XSS risk for users importing the spreadsheet, if it contained unsafe content.
ID numbers displayed in the quiz grading report required additional sanitizing to prevent a stored XSS risk.
Wiki comments required additional sanitizing and access restrictions to prevent a stored XSS risk and potential IDOR risk.
The course upload preview contained an XSS risk for users uploading unsafe data.
The CSV grade import method contained an XSS risk for users importing the spreadsheet, if it contained unsafe content.
Cross Site Scripting (XSS) vulnerability in NASA Open MCT (aka openmct) through 3.1.0 allows attackers to run arbitrary code via the new component feature in the flexibleLayout plugin.
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Michael Mann Simple Site Verify plugin <= 1.0.7 versions.