CVE-2022-2066: Cross-site Scripting (XSS) - Reflected in neorazorx/facturascripts
Published Jun 13, 2022
·Updated
Cross-site Scripting (XSS) - Reflected in GitHub repository neorazorx/facturascripts prior to 2022.06.
Affected Software
1 affected component
facturascripts facturascripts<2022.06
Remediation
Event History
Jun 13, 2022
CVE Published
via MITRE·12:15 PM
Data Sourced
via MITRE·12:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2022-2066?
CVE-2022-2066 is a Cross-site Scripting (XSS) vulnerability found in the GitHub repository neorazorx/facturascripts prior to version 2022.06.
2
How severe is CVE-2022-2066?
CVE-2022-2066 has a severity rating of 6.1, which is considered high.
3
What is the affected software of CVE-2022-2066?
The affected software is Facturascripts version up to exclusive 2022.06.
4
How can I fix CVE-2022-2066?
To fix CVE-2022-2066, update Facturascripts to version 2022.06 or later.
5
What is the Common Weakness Enumeration (CWE) of CVE-2022-2066?
The CWE of CVE-2022-2066 is CWE-79, which refers to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting').