Vulnerabilities/

VvvebJs Reflected Cross-Site Scripting (XSS) vulnerability

Severity:
Medium

Description

A reflected Cross-Site Scripting (XSS) vulnerability in VvvebJs before version 1.7.5 allows remote attackers to execute arbitrary code and obtain sensitive information via the action parameter in save.php.

Recommendation

Update the vvvebjs package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
vvvebjs
Anything's wrong? Let us know Last updated on August 29, 2024

This issue is available in SmartScanner Professional

See Pricing