CVE-2022-27894: The Foundry Blobster service was found to have a cross-site scripting (XSS) vulnerability.
The Foundry Blobster service was found to have a cross-site scripting (XSS) vulnerability that could have allowed an attacker with access to Foundry to launch attacks against other users. This vulnerability is resolved in Blobster 3.228.0.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-27894?
CVE-2022-27894 is a cross-site scripting (XSS) vulnerability found in the Foundry Blobster service.
What is the severity of CVE-2022-27894?
CVE-2022-27894 has a severity score of 5.4, which is considered medium.
How does CVE-2022-27894 affect the Foundry Blobster service?
CVE-2022-27894 allowed an attacker with access to Foundry to launch cross-site scripting (XSS) attacks against other users of the service.
How can I fix CVE-2022-27894?
You can resolve CVE-2022-27894 by updating to Blobster 3.228.0, which addresses the cross-site scripting (XSS) vulnerability.
Where can I find more information about CVE-2022-27894?
You can find more information about CVE-2022-27894 in the Palantir security bulletin at this URL: https://github.com/palantir/security-bulletins/blob/main/PLTRSEC-2022-04.md