Vulnerability Details CVE-2017-1000006
Plotly, Inc. plotly.js versions prior to 1.16.0 are vulnerable to an XSS issue.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 69.6%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2017-1000006
-
cpe:2.3:a:plotly:plotly.js:1.11.0
-
cpe:2.3:a:plotly:plotly.js:1.12.0
-
cpe:2.3:a:plotly:plotly.js:1.13.0
-
cpe:2.3:a:plotly:plotly.js:1.14.0
-
cpe:2.3:a:plotly:plotly.js:1.14.1
-
cpe:2.3:a:plotly:plotly.js:1.14.2
-
cpe:2.3:a:plotly:plotly.js:1.15.0