Cross-site Scripting (XSS) - DOM in hakimel/reveal.js
28Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendcvss 5.3epss 3.7%
exploitation probability
3.7%top 11% of all CVEs
observed exploitation
nono source reports it
Cross-site Scripting (XSS) - DOM in GitHub repository hakimel/reveal.js prior to 4.3.0.
CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N
Affected products
hakimel · hakimel/reveal.js