What MITRE CAPEC-592: Stored XSS (Detailed Attack Pattern - Very High Severity) requires
MITRE CAPEC-592 (Stored XSS) is a detailed-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. An adversary utilizes a form of Cross-site Scripting (XSS) where a malicious script is persistently "stored" within the data storage of a vulnerable web application as valid input. Likelihood of attack: High. Typical severity: Very High. Parent pattern for CAPEC-18 XSS Targeting Non-Script Elements; CAPEC-198 XSS Targeting Error Pages; CAPEC-199 XSS Using Alternate Syntax; and others. Maps to weaknesses CWE-79.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://capec.mitre.org/data/definitions/592.html
SHA-256 integrity: dfe8d621a536e7b6db2fa5f2f4e2acf3ca69a60ccf48376b6ddc6e504b1f8f05
Primary Citations — 8 traced to source
- MITRE CAPEC-592: Stored XSS (https://capec.mitre.org/data/definitions/592.html)
- CWE-79: underlying weakness (http://cwe.mitre.org/data/definitions/79.html)
+ 6 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.