CVE-2017-18352
published 2018-12-17CVE-2017-18352: Error reporting within Rendertron 1.0.0 allows reflected Cross Site Scripting (XSS) from invalid URLs.
medium6.1CVSS 3.0
AVNACLPRNUIRSCCLILAN
Error reporting within Rendertron 1.0.0 allows reflected Cross Site Scripting (XSS) from invalid URLs.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| rendertron | — | — | |
| rendertron | >= 0 < 1.1.0 | 1.1.0 |