First published: Thu Mar 24 2022(Updated: )
Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/data-hub prior to 1.2.4.
Credit: security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Pimcore Data-hub | <1.2.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-0955 has a severity rating of medium due to its potential impact on user data through cross-site scripting.
To fix CVE-2022-0955, upgrade Pimcore Data-hub to version 1.2.4 or later.
CVE-2022-0955 is a stored Cross-site Scripting (XSS) vulnerability.
CVE-2022-0955 affects users of Pimcore Data-hub versions prior to 1.2.4.
An attacker exploiting CVE-2022-0955 can potentially execute arbitrary JavaScript in the context of a victim's session.