Description
Os Commerce is currently susceptible to a Cross-Site Scripting (XSS) vulnerability. This vulnerability allows attackers to inject JS through the "BILLING_GENDER_TITLE[1]" parameter, potentially leading to unauthorized execution of scripts within a user's web browser.
Remediation
References
Related Vulnerabilities
Squid Improper Input Validation Vulnerability (CVE-2015-3455)
WebLogic CVE-2016-0688 Vulnerability (CVE-2016-0688)
Drupal Improper Input Validation Vulnerability (CVE-2022-25273)
Joomla! Core 3.x.x Cross-Site Scripting (3.7.0 - 3.10.6)
Oracle Database Server CVE-2013-5771 Vulnerability (CVE-2013-5771)