Security Advisory

CVE-2015-3257

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2017-08-25 18:00:00
Last updated 2024-08-06 05:39:32
Assigner redhat
State PUBLISHED

Description

Zend/Diactoros/Uri::filterPath in zend-diactoros before 1.0.4 does not properly sanitize path input, which allows remote attackers to perform cross-site scripting (XSS) or open redirect attacks.