CVE-2022-0838: Cross-site Scripting (XSS) - Reflected in hestiacp/hestiacp
Published Mar 4, 2022
·Updated
Cross-site Scripting (XSS) - Reflected in GitHub repository hestiacp/hestiacp prior to 1.5.10.
Affected Software
1 affected component
hestiacp Control Panel<1.5.10
Remediation
Event History
Mar 4, 2022
CVE Published
via MITRE·08:10 AM
Data Sourced
via MITRE·08:10 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2022-0838.
2
What is the title of the vulnerability?
The title of the vulnerability is Cross-site Scripting (XSS) - Reflected in GitHub repository hestiacp/hestiacp prior to 1.5.10.
3
What is the severity of the vulnerability?
The severity of the vulnerability is medium with a CVSS score of 6.1.
4
Which software version is affected by the vulnerability?
The Hestiacp Control Panel version prior to 1.5.10 is affected by the vulnerability.
5
How can I fix the vulnerability?
To fix the vulnerability, update your Hestiacp Control Panel to version 1.5.10 or higher.