CVE List

CVE-2022-3193

Moderate 6.1

An HTML injection/reflected Cross-site scripting (XSS) vulnerability was found in the ovirt-engine. A parameter "error_description" fails to sanitize the entry, allowing the vulnerability to trigger on the Windows Service Accounts home pages.

Published September 28, 2022.

Affected software

Get alerts for Ovirt Ovirt-engine

Reference links