A full range of weaknesses is possible, including injection, broken access control, XSS, etc. The impact could range from minimal to complete. Attacker needs to identify the weak part through scanning or manual analysis. Many application has these issues on the grounds that most development teams dont concentrate on guaranteeing their parts/libraries are breakthrough. The risk is widely spread, but the risk is very low, most of the time, the developers don’t know every one of the parts they are utilizing, it doesn’t mind their formats.”]
Source: https://gbhackers.com/9-using-components-known-vulnerabilities/

