Cross Site Scripting vulnerability in Stimulsoft GmbH Stimulsoft Dashboard.JS before v.2024.1.2 allows a remote attacker to execute arbitrary code via a crafted payload to the ReportName field.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| stimulsoft-dashboards-js(npm) | 0 | 2024.1.2 | N/A |
CVSS Metrics