First published: Thu Mar 10 2022(Updated: )
Static Code Injection in GitHub repository microweber/microweber prior to 1.3.
Credit: security@huntr.dev security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Microweber Microweber | <1.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-0895 is a vulnerability that allows for static code injection in the GitHub repository microweber/microweber prior to version 1.3.
CVE-2022-0895 has a severity rating of critical, with a CVSS score of 9.8.
The vulnerability affects Microweber Microweber versions up to but excluding 1.3.
To fix CVE-2022-0895, it is recommended to update your Microweber Microweber installation to version 1.3 or later.
More information about CVE-2022-0895 can be found at the following references: [GitHub Commit](https://github.com/microweber/microweber/commit/b2baab6e582b2efe63788d367a2bb61a2fa26470), [Huntr Bounty](https://huntr.dev/bounties/3c070828-fd00-476c-be33-9c877172363d).