Headline
GHSA-32fj-r8qw-r8w8: MindsDB Cross-site Scripting vulnerability
A cross-site scripting (XSS) vulnerability exists in all versions of the MindsDB platform, enabling the execution of a JavaScript payload whenever a user enumerates an ML Engine, database, project, or dataset containing arbitrary JavaScript code within the web UI.
MindsDB Cross-site Scripting vulnerability
Moderate severity GitHub Reviewed Published Sep 12, 2024 to the GitHub Advisory Database • Updated Sep 12, 2024