ZeroHour

CVE-2017-16015

CVSS 3.0
6.1 medium
EPSS
<1%p56
Published
()
Modified
Description

Forms is a library for easily creating HTML forms. Versions before 1.3.0 did not have proper html escaping. This means that if the application did not sanitize html on behalf of forms, use of forms may be vulnerable to cross site scripting

Vendors
forms project
Products
forms
Weakness
CWE-80, CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.