Selection:
XSS CSRF Privilege Buffer Remote Stack
CVE ID Name Status References
CVE-2021-46888

An issue was discovered in hledger before 1.23. A Stored Cross-Site Scripting (XSS) vulnerability exists in toBloodhoundJson that allows an attacker to execute JavaScript by encoding user-controlled values in a payload with base64 and parsing them with the atob function.

Assigned (20230521)

MISC:https://github.com/simonmichael/hledger/issues/1525 | MISC:https://github.com/simonmichael/hledger/pull/1663 | MISC:https://github.com/simonmichael/hledger/releases/tag/1.23 | MISC:https://www.youtube.com/watch?v=QnRO-VkfIic


Page created:

CVE year by year statistics.

CVE year statistics by common vulnerability domain.

Latest data from: 2024-04-25