Security Advisory

CVE-2020-28464

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-01-04 11:50:18
Last updated 2024-09-17 02:27:33
Assigner snyk
State PUBLISHED

Description

This affects the package djv before 2.1.4. By controlling the schema file, an attacker can run arbitrary JavaScript code on the victim machine.