GHSA-3893-7mx9-f68m
GitHub Security Advisory
⚠ Unreviewed
MODERATE
Has CVE
Advisory Details
Due to insufficient input validation, SAPUI5 library(vbm) - versions 750, 753, 754, 755, 75, allows an unauthenticated attacker to inject a script into the URL and execute code. On successful exploitation, an attacker can view or modify information causing a limited impact on confidentiality and integrity of the application.
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: June 25, 2025 8:46 PM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.