GHSA-5g4h-rvhm-8jcr
GitHub Security Advisory
⚠ Unreviewed
MODERATE
Has CVE
Advisory Details
Cross-site scripting (XSS) vulnerability in QNAP NAS application Media Streaming add-on version 421.1.0.2, 430.1.2.0, and earlier allows remote attackers to inject arbitrary web script or HTML. The injected code will only be triggered by a crafted link, not the normal page.
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: June 30, 2025 6:26 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.