Cross-Site Scripting Vulnerabilities in Google Web Toolkit
CVE-2013-4204

Currently unrated

Key Information:

Vendor

Google

Vendor
CVE Published:
18 November 2013

What is CVE-2013-4204?

Multiple cross-site scripting (XSS) vulnerabilities exist in the JUnit files included with the Google Web Toolkit (GWT) before version 2.5.1 RC1. These vulnerabilities allow remote attackers to inject arbitrary web scripts or HTML into pages viewed by users, potentially compromising the integrity of web applications that utilize GWT. The affected vectors remain unspecified, posing a significant risk to applications relying on this framework.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.