CVE-2016-1000007
MEDIUMPagure 2.2.1 - Cross-Site Scripting in Raw File Endpoint
Title source: llmDescription
Pagure 2.2.1 XSS in raw file endpoint
References (1)
Core 1
Core References
Patch x_refsource_misc
https://pagure.io/pagure/c/070d63983fe5daef92005ea33d3b8c693c224c77.patch
Scores
CVSS v3
6.1
EPSS
0.0067
EPSS Percentile
47.9%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Details
CWE
CWE-79
Status
published
Products (1)
redhat/pagure
2.2.1
Published
Oct 07, 2016
Tracked Since
Feb 18, 2026