Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Gabriel Thau

#47128of 53,630
5.4Total CVSS
Vulnerabilities · 1
PT-2020-2929
5.4
2020-06-09
Microsoft · Nuget Gallery · CVE-2020-1340
**Name of the Vulnerable Software and Affected Versions** NuGetGallery (affected versions not specified) **Description** A spoofing issue exists due to improper sanitization of input on package metadata values. This could potentially allow a remote attacker to perform cross-site scripting attacks. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.