Description
Os Commerce is currently susceptible to a Cross-Site Scripting (XSS) vulnerability. This vulnerability allows attackers to inject JS through the "configuration_title[1](MODULE)" parameter, potentially leading to unauthorized execution of scripts within a user's web browser.
Remediation
References
Related Vulnerabilities
WordPress Plugin RocketTheme RokBox 'jwplayer.swf' Cross-Site Scripting (2.11)
MySQL CVE-2019-2634 Vulnerability (CVE-2019-2634)
MySQL Cleartext Transmission of Sensitive Information Vulnerability (CVE-2017-3305)
WebLogic CVE-2023-21979 Vulnerability (CVE-2023-21979)
WordPress Plugin Salon Booking System Cross-Site Scripting (6.3)