CVE-2022-0895: Static Code Injection in microweber/microweber
Static Code Injection in GitHub repository microweber/microweber prior to 1.3.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2022-0895?
CVE-2022-0895 is a vulnerability that allows for static code injection in the GitHub repository microweber/microweber prior to version 1.3.
How severe is CVE-2022-0895?
CVE-2022-0895 has a severity rating of critical, with a CVSS score of 9.8.
Which software versions are affected by CVE-2022-0895?
The vulnerability affects Microweber Microweber versions up to but excluding 1.3.
How can I fix CVE-2022-0895?
To fix CVE-2022-0895, it is recommended to update your Microweber Microweber installation to version 1.3 or later.
Where can I find more information about CVE-2022-0895?
More information about CVE-2022-0895 can be found at the following references: [GitHub Commit](https://github.com/microweber/microweber/commit/b2baab6e582b2efe63788d367a2bb61a2fa26470), [Huntr Bounty](https://huntr.dev/bounties/3c070828-fd00-476c-be33-9c877172363d).