Description
An issue was discovered in OpenTSDB 2.3.0. There is XSS in parameter 'type' to the /suggest URI.
Remediation
References
https://github.com/OpenTSDB/opentsdb/issues/1241
Related Vulnerabilities
CVE-2015-7940 Vulnerability in maven package org.bouncycastle:bcprov-jdk15on
CVE-2022-24278 Vulnerability in npm package convert-svg-core
CVE-2023-40812 Vulnerability in maven package org.opencrx:opencrx-core-models
CVE-2021-23414 Vulnerability in npm package video.js
CVE-2020-28458 Vulnerability in maven package org.webjars.npm:datatables.net