Paella Player 是一套用于创建多流视频播放器的库。在 Paella Player 2.12.11 之前(该版本也被 Opencast 19.7 和 20.2 之前的版本所使用),存在通过字幕(closed captions)的提示文本(cue text)发起潜在跨站脚本(XSS)攻击的漏洞。此漏洞已在 2.12.11 版本中得到修复。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| opencast | opencast | < 19.7 | - |
|
| polimediaupv | paella-player | < 2.12.11 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet