Reflected Cross-Site Scripting (XSS) vulnerability in...
Moderate severity
Unreviewed
Published
Sep 8, 2025
to the GitHub Advisory Database
•
Updated Sep 8, 2025
Description
Published by the National Vulnerability Database
Sep 8, 2025
Published to the GitHub Advisory Database
Sep 8, 2025
Last updated
Sep 8, 2025
Reflected Cross-Site Scripting (XSS) vulnerability in WebWork, which allows remote attackers to execute arbitrary code through the 'q' and 'engine' request parameters in /search.
References