Cross-site Scripting (XSS) - Reflected in Packagist microweber/microweber prior to 1.2.11.
References
Link | Resource |
---|---|
https://github.com/microweber/microweber/commit/f7f5d41ba1a08ceed37c00d5f70a3f48b272e9f2 | Patch Third Party Advisory |
https://huntr.dev/bounties/4999a0f4-6efb-4681-b4ba-b36babc366f9 | Exploit Issue Tracking Patch Third Party Advisory |
Configurations
Information
Published : 2022-02-19 09:15
Updated : 2022-02-25 18:39
NVD link : CVE-2022-0690
Mitre link : CVE-2022-0690
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
microweber
- microweber