phpxmlrpc/extra XSS in class documenting_xmlrpc_server
Moderate severity
GitHub Reviewed
Published
May 20, 2024
to the GitHub Advisory Database
•
Updated May 20, 2024
Description
Published to the GitHub Advisory Database
May 20, 2024
Reviewed
May 20, 2024
Last updated
May 20, 2024
Versions preceding 0.6.1 of the phpxmlrpc/extras project are susceptible to a Cross-Site Scripting (XSS) vulnerability. This vulnerability exists within the class documenting_xmlrpc_server when processing the GET methodName parameter.
References