### [CVE-2019-10771](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-10771) ![](https://img.shields.io/static/v1?label=Product&message=iobroker.web&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=Cross-site%20Scripting%20(XSS)&color=brighgreen) ### Description Characters in the GET url path are not properly escaped and can be reflected in the server response. ### POC #### Reference No PoCs from references. #### Github - https://github.com/ossf-cve-benchmark/CVE-2019-10771