Back to search
CVE-2019-20008
Published: Dec 26, 2019
Modified: Aug 5, 2024
PUBLISHED
Description
In Archery before 1.3, inserting an XSS payload into a project name (either by creating a new project or editing an existing one) will result in stored XSS on the vulnerability-scan scheduling page.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://github.com/archerysec/archerysec/issues/338
x_refsource_MISC
https://github.com/archerysec/archerysec/releases/tag/v1.3
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now