MEDIUM
Reflected cross-site scripting (XSS) vulnerability in LabKey Server Community Edition before 18.3.0-61806.763 allows an unauthenticated remote attacker to inject arbitrary javascript via the onerror parameter in the /__r2/query endpoints
Published Jan 30, 2019
6.1
MEDIUMCVSS 3.1
EPSS 3.81%
Description
Affected products
Remediation
References (1)
Change history (0)
No recorded changes yet.