Loading HuntDB...

GHSA-g7vc-r5r2-8x6v

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

A cross-site scripting (XSS) vulnerability in the Submission module of Pkp Ojs v3.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Input subject field under the Add Discussion function.

Related CVEs

Key Information

GHSA ID
GHSA-g7vc-r5r2-8x6v
Published
March 2, 2024 12:31 AM
Last Modified
August 16, 2024 12:32 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 15, 2025 6:32 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.