financeTracker

vulnerability cross site scripting (xss)
severity 7.5
language python
registry other

:book: Description

This package is vulnerable for arbitaryCodeexecution

https://github.com/Tehforsch/financeTracker

:recycle: Steps To Reproduce-:

  1. git clone https://github.com/Tehforsch/financeTracker
  2. run as in poc.png

:telescope: POC

💥 Impact

Arbitary code execution