### [CVE-2017-1000427](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-1000427) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa%20&color=brightgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brightgreen) ### Description marked version 0.3.6 and earlier is vulnerable to an XSS attack in the data: URI parser. ### POC #### Reference No PoCs from references. #### Github - https://github.com/ARPSyndicate/cvemon - https://github.com/Blackfly0537/test - https://github.com/DevSecCube/damn-vulnerable-sca - https://github.com/HotDB-Community/HotDB-Engine - https://github.com/SCA-Testing-Org/Damn-Vulnerable-Sca-E2E - https://github.com/aparnalaxmi07/sca-goat - https://github.com/harekrishnarai/Damn-vulnerable-sca - https://github.com/harshit-kochar/Damn-vulnerable-sca - https://github.com/ossf-cve-benchmark/CVE-2017-1000427 - https://github.com/rdosec/Damn-vulnerable-sca