CVE-2021-4296: w3c Unicorn ValidatorNuMessage.java ValidatorNuMessage cross site scripting
A vulnerability, which was classified as problematic, has been found in w3c Unicorn. This issue affects the function ValidatorNuMessage of the file src/org/w3c/unicorn/response/impl/ValidatorNuMessage.java. The manipulation of the argument message leads to cross site scripting. The attack may be initiated remotely. The name of the patch is 51f75c31f7fc33859a9a571311c67ae4e95d9c68. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217019.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2021-4296?
CVE-2021-4296 has been classified as problematic due to its potential for cross-site scripting.
How do I fix CVE-2021-4296?
To fix CVE-2021-4296, update the w3c Unicorn software to a version released after June 3, 2021.
What kind of vulnerability is CVE-2021-4296?
CVE-2021-4296 is a cross-site scripting vulnerability related to the ValidatorNuMessage function.
Which versions of w3c Unicorn are affected by CVE-2021-4296?
CVE-2021-4296 affects all versions of w3c Unicorn prior to June 3, 2021.
What is the impact of CVE-2021-4296?
The impact of CVE-2021-4296 includes potential security breaches through cross-site scripting if exploited.