Total vulnerabilities in the database
An issue was discovered in Agentejo Cockpit 0.10.2. Insufficient sanitization of the to parameter in the /auth/login route allows for injection of arbitrary JavaScript code into a web page's content, creating a Reflected XSS attack vector.
Software | From | Fixed in |
---|---|---|
agentejo / cockpit | 0.10.2 | 0.10.2.x |