PT-2023-23086 · Foundry · Foundry Frontend
Published
2023-08-03
·
Updated
2023-08-08
·
CVE-2023-30958
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Foundry Frontend versions prior to 6.225.0
Description
A security defect was identified in Foundry Frontend that enabled users to potentially conduct DOM XSS attacks if Foundry's Content Security Policy (CSP) were to be bypassed.
Recommendations
For versions prior to 6.225.0, update to Foundry Frontend 6.225.0 to resolve the issue.
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Foundry Frontend