Cross-site Scripting (XSS) - Stored in phoronix-test-suite/phoronix-test-suite
13Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 5.2epss 1.1%
exploitation probability
1.1%top 36% of all CVEs
observed exploitation
nono source reports it
phoronix-test-suite is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:L/A:N
Affected products
phoronix-test-suite · phoronix-test-suite/phoronix-test-suiteReferences
https://github.com/phoronix-test-suite/phoronix-test-suite/commit/56fd0a3b69fb33c1c90a6017ed735889aaa59486https://huntr.dev/bounties/2c0fe81b-0977-4e1e-b5d8-7646c9a7ebbdhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/57V2CSFU5MKWKL6RJUKMXSD4PCRFTMMQ/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BU7E6OOZCXS3ZWHOQ2AR7MKM56IN2R6R/