Vulnerability Details CVE-2023-30959
In Apollo change requests, comments added by users could contain a javascript URI link that when rendered will result in an XSS that require user interaction.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 39.6%
CVSS Severity
CVSS v3 Score 4.1
Products affected by CVE-2023-30959
-
cpe:2.3:a:palantir:apollo_autopilot:-