Vulnerabilities (CVE)

Filtered by vendor Ericsson Subscribe
Filtered by product Codechecker
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-44217 1 Ericsson 1 Codechecker 2023-12-10 4.3 MEDIUM 6.1 MEDIUM
In Ericsson CodeChecker through 6.18.0, a Stored Cross-site scripting (XSS) vulnerability in the comments component of the reports viewer allows remote attackers to inject arbitrary web script or HTML via the POST JSON data of the /CodeCheckerService API.