Loading HuntDB...

GHSA-77h7-f57j-cjv2

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

HCL Connections is vulnerable to reflected cross-site scripting (XSS) where an attacker may leverage these issues to execute arbitrary script code in the browser of an unsuspecting user after visiting the vulnerable URL which contains the malicious script code. This may allow the attacker to steal cookie-based authentication credentials and comprise a user's account then launch other attacks.

Related CVEs

Key Information

GHSA ID
GHSA-77h7-f57j-cjv2
Published
November 9, 2023 12:33 AM
Last Modified
November 9, 2023 12:33 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 11, 2025 6:35 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.