Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
XSS vulnerability in NuGetGallery HTML attributes handling
Vulnerability Description
NuGet Gallery is a package repository that powers nuget.org. The NuGetGallery has a security vulnerability in its handling of HTML element attributes, which allows an attacker to execute arbitrary HTML or Javascript code in a victim's browser.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N
Vulnerability Type
在Web页面生成时对输入的转义处理不恰当(跨站脚本)
Vulnerability Title
NuGet Gallery 跨站脚本漏洞
Vulnerability Description
NuGet Gallery是NuGet开源的一个支持NuGet的软件包存储库。 NuGet Gallery存在跨站脚本漏洞。攻击者利用该漏洞在受害者的浏览器中执行任意 HTML 或 Javascript 代码。
CVSS Information
N/A
Vulnerability Type
N/A