Description
LinkedIn Oncall through 1.4.0 allows reflected XSS via /query because of mishandling of the "No results found for" message in the search bar.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-rfw2-x9f8-2f6m | LinkedIn Oncall vulnerable to Cross-Site Scripting |
References
| Link | Providers |
|---|---|
| https://github.com/linkedin/oncall/issues/341 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T20:33:40.948Z
Reserved: 2021-02-05T00:00:00.000Z
Link: CVE-2021-26722
No data.
Status : Modified
Published: 2021-02-05T18:15:12.690
Modified: 2024-11-21T05:56:44.873
Link: CVE-2021-26722
No data.
OpenCVE Enrichment
No data.
Weaknesses
Github GHSA