MolecularFaces before 0.3.0 is vulnerable to cross site scripting. A remote attacker can execute arbitrary JavaScript in the context of a victim browser via crafted molfiles.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| de.ipb-halle:molecularfaces(Maven) | 0 | 0.3.0 | N/A |
CVSS Metrics