Files
CVEs-PoC/2020/CVE-2020-28470.md
T
2024-05-25 21:48:12 +02:00

689 B

CVE-2020-28470

Description

This affects the package @scullyio/scully before 1.0.9. The transfer state is serialised with the JSON.stringify() function and then written into the HTML page.

POC

Reference

Github

No PoCs found on GitHub currently.