A Universal Cross Site Scripting... CVE-2022-48612

- AV AC AU C I A
发布: 2023-10-16
修订: 2024-11-21

A Universal Cross Site Scripting (UXSS) vulnerability in ClassLink OneClick Extension through 10.7 allows remote attackers to inject JavaScript into any webpage, because a regular expression (validating whether a URL is controlled by ClassLink) is not present in all applicable places.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息