github.com
https://github.com/OpenTSDB/opentsdb CVE-2018-13003
MEDIUM
OpenTSDB Cross-site Scripting vulnerability
Record summary
CVE-2018-13003 has a selected CVSS score of 6.1 (medium).
Description
An issue was discovered in OpenTSDB 2.3.0. There is XSS in parameter 'type' to the /suggest URI.
Description source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
net.opentsdb:opentsdbBrowse Maven / net.opentsdb:opentsdb | GitHub Advisory | Through 2.3.0 | affected |
References
3github.com
https://github.com/OpenTSDB/opentsdb/issues/1241 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2018-13003