Vulnerabilities/

Saltcorn Server Stored Cross-Site Scripting (XSS) in event logs page

Severity:
Medium

Description

Event log data is not properly sanitized leading to stored Cross-Site Scripting (XSS) vulnerability.

Recommendation

Update the @saltcorn/server package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
@saltcorn/server
Anything's wrong? Let us know Last updated on October 07, 2024

This issue is available in SmartScanner Professional

See Pricing