[MAVEN:GHSA-VV6J-5X58-Q2C3] Cross-site scripting (XSS) vulnerability in Sun Java Server Faces (JSF)

Severity Moderate
Affected Packages 1
Fixed Packages 1
CVEs 1

Cross-site scripting (XSS) vulnerability in Sun Java Server Faces (JSF) 1.2 before 1.2_08 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.

Package Affected Version
pkg:maven/com.sun.faces/jsf-api < 1.2.08
Package Fixed Version
pkg:maven/com.sun.faces/jsf-api = 1.2.08
ID
MAVEN:GHSA-VV6J-5X58-Q2C3
Severity
moderate
URL
https://github.com/advisories/GHSA-vv6j-5x58-q2c3
Published
2022-05-01T23:38:35
(2 years ago)
Modified
2023-01-27T05:02:13
(20 months ago)
Rights
Maven Security Team
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:maven/com.sun.faces/jsf-api com.sun.faces jsf-api < 1.2.08
Fixed pkg:maven/com.sun.faces/jsf-api com.sun.faces jsf-api = 1.2.08
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...