CVE-2022-0896: Improper Neutralization of Special Elements Used in a Template Engine in microweber/microweber
Published Mar 9, 2022
·Updated
Improper Neutralization of Special Elements Used in a Template Engine in GitHub repository microweber/microweber prior to 1.3.
Affected Software
1 affected component
Microweber Microweber<1.3
Remediation
Event History
Mar 9, 2022
CVE Published
via MITRE·11:20 AM
Data Sourced
via MITRE·11:20 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2022-0896.
2
What is the severity of CVE-2022-0896?
The severity of CVE-2022-0896 is high (8.8).
3
What software is affected by CVE-2022-0896?
The Microweber software prior to version 1.3 is affected by CVE-2022-0896.
4
How can I fix CVE-2022-0896?
To fix CVE-2022-0896, it is recommended to update Microweber to version 1.3 or later.
5
Where can I find more information about CVE-2022-0896?
You can find more information about CVE-2022-0896 at the following references: [GitHub commit](https://github.com/microweber/microweber/commit/e0224462b3dd6b1f7c6ec1197413afc6019bc3b5), [Huntr.dev bounty](https://huntr.dev/bounties/113056f1-7a78-4205-9f42-940ad41d8df0).