CVE-2022-2470: Cross-site Scripting (XSS) - Reflected in microweber/microweber
Published Jul 22, 2022
·Updated
Cross-site Scripting (XSS) - Reflected in GitHub repository microweber/microweber prior to 1.2.21.
Affected Software
1 affected component
Microweber Microweber<1.2.21
Remediation
Event History
Jul 22, 2022
CVE Published
via MITRE·02:24 PM
Data Sourced
via MITRE·02:24 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-2470?
The severity of CVE-2022-2470 is medium (6.1).
2
How can I fix CVE-2022-2470?
To fix CVE-2022-2470, upgrade your GitHub repository microweber/microweber to version 1.2.21 or later.
3
What is Cross-site Scripting (XSS)?
Cross-site Scripting (XSS) is a type of vulnerability that allows attackers to inject malicious scripts into web pages viewed by other users.
4
Which software versions are affected by CVE-2022-2470?
The GitHub repository microweber/microweber prior to version 1.2.21 is affected by CVE-2022-2470.
5
What is the Common Weakness Enumeration (CWE) ID of CVE-2022-2470?
The Common Weakness Enumeration (CWE) ID of CVE-2022-2470 is CWE-79.