Detection of XSS vulnerabilities in OJS

Authors

  • Serhii Buchyk Taras Shevchenko National University of Kyiv
  • Ruslana Ziubina University of Bielsko-Biala
  • Tetiana Yuzhakova Taras Shevchenko National University of Kyiv
  • Anastasiia Shabanova Taras Shevchenko National University of Kyiv

Abstract

This article analyzes XSS vulnerabilities in OJS (Open Journal Systems) and develops a model for protecting against these attacks. It discusses different types of XSS attacks, vulnerabilities in OJS, methods of detecting them, and potential consequences for system security. The article describes a specific vulnerability that can be exploited to inject malicious code through user input of specially generated data. Based on the analysis, a protection model is developed, which includes the introduction of restrictions for vulnerable fields, encoding, and filtering of data before displaying it on the page. This article is essential for OJS administrators and developers to ensure high security and protection against potential XSS attacks.

Additional Files

Published

2025-03-26

Issue

Section

Security, Safety, Military