Description
Reflected Cross-Site Scripting (XSS) vulnerability in VvvebJs before version 1.7.7, allows remote attackers to execute arbitrary code and obtain sensitive information via the action parameter in save.php.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-pc95-3wgm-x28p | VvvebJs Reflected Cross-Site Scripting (XSS) vulnerability |
References
History
Thu, 26 Feb 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Givanz
Givanz vvvebjs |
|
| CPEs | cpe:2.3:a:givanz:vvvebjs:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Givanz
Givanz vvvebjs |
|
| Metrics |
ssvc
|
Wed, 28 May 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Vvveb
Vvveb vvvebjs |
|
| CPEs | cpe:2.3:a:vvveb:vvvebjs:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Vvveb
Vvveb vvvebjs |
Wed, 28 Aug 2024 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-28T14:04:35.330Z
Reserved: 2024-03-19T00:00:00.000Z
Link: CVE-2024-29271
Updated: 2024-08-02T01:10:54.618Z
Status : Analyzed
Published: 2024-03-22T04:15:11.573
Modified: 2025-05-28T18:44:18.073
Link: CVE-2024-29271
No data.
OpenCVE Enrichment
No data.
Weaknesses
Github GHSA