Cross-site scripting (XSS) vulnerability found in script tag: <script>
// OneTag queue - https://onetagdoc.cloud.capitalone.com/installation#queue
(function (w) {
if (w.oneTag) return;
w.oneTag = {};
w.oneTagEventQueue = [];
w.oneTag.track = function...