Cross-Site Scripting (XSS) in Comment Section

High
In Progress
Finding Details
Comprehensive information about this security finding

Description

The comment section of the blog allows for stored XSS attacks, enabling attackers to inject malicious scripts that execute when other users view the comments.

Impact

Risk Rating

High
CVSS Score: 8.2
Finding Information

ID

f2

Discovered

Last Updated

Assigned To

Jane Smith

Due Date

Not set

Actions
Related Links
View Assessment