Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in the edit comment dialog in bkr/server/widgets.py in Beaker 20.1 allows remote authenticated users to inject arbitrary web script or HTML via writing a crafted comment on an acked or nacked canceled job.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Beaker 跨站脚本漏洞
Vulnerability Description
Beaker是一套开源的可对实验室的测试计算机提供管理和自动化功能的软件。 Beaker中的bkr/server/widgets.py文件的edit comment dialog存在跨站脚本漏洞。远程攻击者可利用该漏洞注入任意的Web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A