CVE-2019-8400
ORY Hydra before v1.0.0-rc.3+oryOS.9 has Reflected XSS via the oauth2/fallbacks/error error_hint parameter.
ORY Hydra before v1.0.0-rc.3+oryOS.9 has Reflected XSS via the oauth2/fallbacks/error error_hint parameter.
MEDIUM · CVSS 6.1
EPSS 0.00323
Schedule remediation
- Public exploit or PoC is available
Sigma rules1
YARA rules0