A Cross Site Scripting (XSS) vulnerability exists in Codex prior to 1.4.0 via Notebook/Page name field, which allows malicious users to execute arbitrary code via a crafted http code in a .json file.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
codex project codex |