CVE-2020-7747
20.10.2020, 11:15
This affects all versions of package lightning-server. It is possible to inject malicious JavaScript code as part of a session controller.
Vendor | Product | Version |
---|---|---|
lightning-viz | lightning | * |
𝑥
= Vulnerable software versions
References