First published: Tue Mar 15 2022(Updated: )
Multiple Stored Cross-site Scripting (XSS) Vulnerabilities in Shop's Other Settings, Shop's Autorespond E-mail Settings and Shops' Payments Methods in GitHub repository microweber/microweber prior to 1.2.11.
Credit: security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Microweber Microweber | <1.2.11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-0954.
The severity of CVE-2022-0954 is medium (5.4).
The Microweber Microweber software up to version 1.2.11 is affected by CVE-2022-0954.
The CWE ID for CVE-2022-0954 is CWE-79.
To fix the vulnerabilities, update your Microweber Microweber software to version 1.2.11 or later.