theyiyibest

1 exploit Active since Feb 2020
CVE-2020-8823 WRITEUP MEDIUM WRITEUP
SockJS < 0.3.0 - Reflected Cross-Site Scripting via HTMLFile Callback Parameter
htmlfile in lib/transport/htmlfile.js in SockJS before 0.3.0 is vulnerable to Reflected XSS via the /htmlfile c (aka callback) parameter.
CVSS 6.1