A Cross-Site Scripting (XSS) vulnerability in the munki_facts (aka Munki Conditions) module before 1.5 for MunkiReport allows remote attackers to inject arbitrary web script or HTML via the key name.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| munkireport/munki_facts(Packagist) | 0 | 1.5 | N/A |
CVSS Metrics