MEDIUM
Doorkeeper version 2.1.0 through 4.2.5 contains a Cross Site Scripting (XSS) vulnerability in web view's OAuth app form, user authorization prompt web view that can result in Stored XSS on the OAuth Client's name will cause users interacting with it will execute payload
Published Mar 13, 2018
6.1
MEDIUMCVSS 3.0
EPSS 1.43%
Description
Affected products
Remediation
References (9)
Change history (0)
No recorded changes yet.