CVE-2019-0238
EUVD-2019-101108.01.2019, 20:29
SAP Commerce (previously known as SAP Hybris Commerce), before version 6.7, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| sap | hybris | 𝑥 < 6.7 |
𝑥
= Vulnerable software versions
References