CVE-2020-8031
EUVD-2020-2894311.02.2021, 15:15
A Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Open Build Service allows remote attackers to store JS code in markdown that is not properly escaped, impacting confidentiality and integrity. This issue affects: Open Build Service versions prior to 2.10.8.Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| opensuse | open_build_service | 𝑥 < 2.10.8 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases