First published: Mon Apr 25 2022(Updated: )
Stored XSS Leads To Session Hijacking in GitHub repository openemr/openemr prior to 6.1.0.1.
Credit: security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Open-emr Openemr | <6.1.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-1458 is high with a CVSS score of 5.4.
CVE-2022-1458 can lead to session hijacking in GitHub repository openemr/openemr prior to version 6.1.0.1.
The affected software for CVE-2022-1458 is Open-emr Openemr prior to version 6.1.0.1.
To fix CVE-2022-1458, update the openemr/openemr repository to version 6.1.0.1 or later.
The Common Weakness Enumeration (CWE) for CVE-2022-1458 is CWE-79 (Improper Neutralization of Input During Web Page Generation).