CVE-2022-0157: Cross-site Scripting (XSS) - Stored in phoronix-test-suite/phoronix-test-suite
phoronix-test-suite is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2022-0157?
CVE-2022-0157 is a vulnerability in phoronix-test-suite that allows for cross-site scripting (XSS) attacks due to improper input sanitization during web page generation.
What is the severity of CVE-2022-0157?
CVE-2022-0157 has a severity score of 5.4, which is considered medium.
Which software versions are affected by CVE-2022-0157?
Versions up to and excluding 10.8.0 of Phoronix Test Suite, Fedora 34, and Fedora 35 are affected by CVE-2022-0157.
How can I fix CVE-2022-0157?
To fix CVE-2022-0157, update Phoronix Test Suite to version 10.8.0 or higher and update Fedora to the latest available version.
Is there any additional information available about CVE-2022-0157?
Yes, you can find more information about CVE-2022-0157 at the following references: - GitHub commit: [link] - Huntr.dev bounty: [link] - Fedora package announcement: [link]