SmallRye Health UI Cross-site Scripting vulnerability
Moderate severity
GitHub Reviewed
Published
Aug 26, 2022
to the GitHub Advisory Database
•
Updated Nov 16, 2023
Description
Published by the National Vulnerability Database
Aug 25, 2022
Published to the GitHub Advisory Database
Aug 26, 2022
Reviewed
Nov 16, 2023
Last updated
Nov 16, 2023
It was found that the smallrye health metrics UI component did not properly sanitize some user inputs. An attacker could use this flaw to conduct cross-site scripting attacks.
References