6.1
CVSSv3

CVE-2019-11274

Published: 09/08/2019 Updated: 31/03/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cloud Foundry UAA, versions before 74.0.0, is vulnerable to an XSS attack. A remote unauthenticated malicious attacker could craft a URL that contains a SCIM filter that contains malicious JavaScript, which older browsers may execute.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cloudfoundry user account and authentication

Github Repositories

A Manually Curated Dataset of Vulnerability Introducing Commits In Java Research in identifying vulnerabilities and the commits that introduce them is ongoing However, many current methods rely heavily on automation, which can lead to a high rate of false positives and require significant error-checking To address this issue, we developed a tool-assisted pipeline to manually