Loading HuntDB...

GHSA-xg4v-qw5v-j6h2

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

The SAP Application Interface (Message Monitoring) - versions 600, 700, allows an authorized attacker to input links or headings with custom CSS classes into a comment. The comment will render links and custom CSS classes as HTML objects. After successful exploitations, an attacker can cause limited impact on the confidentiality and integrity of the application.

Related CVEs

Key Information

GHSA ID
GHSA-xg4v-qw5v-j6h2
Published
April 11, 2023 6:30 AM
Last Modified
April 4, 2024 3:23 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 18, 2025 6:25 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.