Description
An issue was discovered in OpenTSDB 2.3.0. There is XSS in parameter 'type' to the /suggest URI.
Remediation
References
https://github.com/OpenTSDB/opentsdb/issues/1241
Related Vulnerabilities
CVE-2019-19771 Vulnerability in npm package siganle
CVE-2022-31186 Vulnerability in npm package next-auth
CVE-2014-3526 Vulnerability in maven package org.apache.wicket:wicket-core
CVE-2018-1229 Vulnerability in maven package org.springframework.batch:spring-batch-admin
CVE-2022-39366 Vulnerability in maven package io.acryl:datahub-client