← Back to CVE List

CVE-2020-8031

Published: 2021-02-11T15:15Z
Last Modified: 2024-11-21T05:38Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
A Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Open Build Service allows remote attackers to store JS code in markdown that is not properly escaped, impacting confidentiality and integrity. This issue affects: Open Build Service versions prior to 2.10.8. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt