CVE-2019-15602
Published Jan 6, 2020The fileview package v0.1.6 has inadequate output encoding and escaping, which leads to a stored Cross-Site Scripting (XSS) vulnerability in files it serves.
Vendor archive
1 CVEs tagged to vendor itwork — 0 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.
The fileview package v0.1.6 has inadequate output encoding and escaping, which leads to a stored Cross-Site Scripting (XSS) vulnerability in files it serves.