The "reset password" login page accepted an HTML...
Moderate severity
Unreviewed
Published
Jul 26, 2024
to the GitHub Advisory Database
•
Updated Aug 13, 2024
Description
Published by the National Vulnerability Database
Jul 25, 2024
Published to the GitHub Advisory Database
Jul 26, 2024
Last updated
Aug 13, 2024
The "reset password" login page accepted an HTML injection via URL parameters.
This has already been rectified via patch, and as such it cannot be demonstrated via Demo site link. Those interested to see the vulnerability may spin up a http://localhost:8082/dotAdmin/#/public/login?resetEmailSent=true&resetEmail=%3Ch1%3E%3Ca%20href%3D%22https:%2F%2Fgoogle.com%22%3ECLICK%20ME%3C%2Fa%3E%3C%2Fh1%3E
This will result in a view along these lines:
References