LAYER: meta-oe
PACKAGE NAME: doxygen-native
PACKAGE VERSION: 1.9.3
CVE: CVE-2016-10245
CVE STATUS: Patched
CVE SUMMARY: Insufficient sanitization of the query parameter in templates/html/search_opensearch.php could lead to reflected cross-site scripting or iframe injection.
CVSS v2 BASE SCORE: 4.3
CVSS v3 BASE SCORE: 6.1
VECTOR: NETWORK
VECTORSTRING: AV:N/AC:M/Au:N/C:N/I:P/A:N
MORE INFORMATION: https://nvd.nist.gov/vuln/detail/CVE-2016-10245