{ "schema_version": "1.4.0", "id": "GHSA-jc59-w8vh-r622", "modified": "2022-05-02T00:04:14Z", "published": "2022-05-02T00:04:14Z", "aliases": [ "CVE-2008-3842" ], "details": "Request Validation (aka the ValidateRequest filters) in ASP.NET in Microsoft .NET Framework without the MS07-040 update does not properly detect dangerous client input, which allows remote attackers to conduct cross-site scripting (XSS) attacks, as demonstrated by a query string containing a \"