Given a malicious document provided by an attacker, the...
Moderate severity
Unreviewed
Published
Feb 7, 2023
to the GitHub Advisory Database
•
Updated Mar 16, 2023
Description
Published by the National Vulnerability Database
Feb 7, 2023
Published to the GitHub Advisory Database
Feb 7, 2023
Last updated
Mar 16, 2023
Given a malicious document provided by an attacker, the ONLYOFFICE Workspace DMS is vulnerable to a stored (persistent, or "Type II") cross-site scripting (XSS) condition.
References