An issue was discovered in hsweb 3.0.4. It is a reflected XSS vulnerability due to the absence of type parameter checking in FlowableModelManagerController.java.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| org.hswebframework.web:hsweb-commons(Maven) | 0 | N/A | N/A |
CVSS Metrics