Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[GHSA-mf45-g8hg-p9g4] Cross-site scripting (XSS) vulnerability in the... #3130

Closed

Conversation

sunSUNQ
Copy link

@sunSUNQ sunSUNQ commented Dec 22, 2023

Updates

  • Affected products
  • References
  • Source code location
  • Summary

Comments
Add source link and some patch links related to CVE-2015-3268.

@github-actions github-actions bot changed the base branch from main to sunSUNQ/advisory-improvement-3130 December 22, 2023 02:57
@darakian
Copy link
Contributor

Hey @sunSUNQ, do you happen to have the maven artifact id for this one?

@sunSUNQ
Copy link
Author

sunSUNQ commented Dec 25, 2023

Hello, I can only confirm that this vulnerability affects https://github.com/apache/ofbiz and I couldn't find any specific impacted components in Maven.

@github-actions github-actions bot deleted the sunSUNQ-GHSA-mf45-g8hg-p9g4 branch December 25, 2023 10:10
@CallmeMari
Copy link

CallmeMari commented Dec 26, 2023

Hi @sunSUNQ, we appreciate you informing us of the repository this vulnerability affects. Unfortunately because the affected product is not apart of any of the GitHub Advisory Database supported ecosystems we would not be able to accept your contribution.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants