CVE-2022-1430: Cross-site Scripting (XSS) - DOM in octoprint/octoprint
Cross-site Scripting (XSS) - DOM in GitHub repository octoprint/octoprint prior to 1.8.0.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2022-1430?
CVE-2022-1430 is a Cross-site Scripting (XSS) vulnerability in GitHub repository octoprint/octoprint prior to version 1.8.0.
How does CVE-2022-1430 impact octoprint/octoprint?
CVE-2022-1430 allows an attacker to execute arbitrary scripts in a victim's browser when they visit a vulnerable webpage in octoprint/octoprint prior to version 1.8.0.
What is the severity of CVE-2022-1430?
CVE-2022-1430 has a severity value of 7.5 (High).
How can I fix CVE-2022-1430 in octoprint/octoprint?
To fix CVE-2022-1430, it is recommended to update octoprint/octoprint to version 1.8.0 or later.
Where can I find more information about CVE-2022-1430?
You can find more information about CVE-2022-1430 in the GitHub commit and the Huntr bounty links: [GitHub Commit](https://github.com/octoprint/octoprint/commit/8087528e4a7ddd15c7d95ff662deb5ef7de90045), [Huntr Bounty](https://huntr.dev/bounties/0cd30d71-1e32-4a0b-b4c3-faaa1907b541).