DOM-based HTML injection vulnerability in the main page...
Moderate severity
Unreviewed
Published
Feb 16, 2024
to the GitHub Advisory Database
•
Updated Jan 13, 2025
Description
Published by the National Vulnerability Database
Feb 16, 2024
Published to the GitHub Advisory Database
Feb 16, 2024
Last updated
Jan 13, 2025
DOM-based HTML injection vulnerability in the main page of Darktrace Threat Visualizer version 6.1.27 (bundle version 61050) and before has been identified. A URL, crafted by a remote attacker and visited by an authenticated user, allows open redirect and potential credential stealing using an injected HTML form.
References