CVE-2022-0719: Cross-site Scripting (XSS) - Reflected in microweber/microweber
Published Feb 23, 2022
·Updated
Cross-site Scripting (XSS) - Reflected in GitHub repository microweber/microweber prior to 1.3.
Affected Software
1 affected component
Microweber Microweber<1.3
Remediation
Event History
Feb 23, 2022
CVE Published
via MITRE·10:15 AM
Data Sourced
via MITRE·10:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-0719?
CVE-2022-0719 has a medium severity rating due to its potential for reflected Cross-site Scripting attacks.
2
How do I fix CVE-2022-0719?
To fix CVE-2022-0719, users should upgrade their Microweber installation to version 1.3 or later.
3
What types of attacks can CVE-2022-0719 lead to?
CVE-2022-0719 can lead to reflected Cross-site Scripting attacks, allowing attackers to execute arbitrary scripts in a user's browser.
4
Which versions of Microweber are affected by CVE-2022-0719?
CVE-2022-0719 affects all Microweber versions prior to 1.3.
5
Is user input safe in Microweber versions affected by CVE-2022-0719?
User input is not safe in Microweber versions affected by CVE-2022-0719 due to inadequate sanitization, making it vulnerable to XSS.