Skip to main content

Vendor/product archive

whitesourcesoftware / whitesource CVEs

Beta · best-effort

1 CVEs tagged to whitesourcesoftware / whitesource0 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2020-5304

Published Jun 8, 2020

The dashboard in WhiteSource Application Vulnerability Management (AVM) before version 20.4.1 allows Log Injection via a %0A%0D substring in the idp parameter to the /saml/login U…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-1 of 1 CVEsPage 1 of 1