CVE-2022-29811: XSS
Published Apr 28, 2022
·Updated
In JetBrains Hub before 2022.1.14638 stored XSS via project icon was possible.
Affected Software
1 affected component
JetBrains Hub<2022.1.14638
Event History
Apr 28, 2022
CVE Published
via MITRE·09:55 AM
Data Sourced
via MITRE·09:55 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this JetBrains Hub vulnerability?
The vulnerability ID for this JetBrains Hub vulnerability is CVE-2022-29811.
2
What is the severity of CVE-2022-29811?
The severity of CVE-2022-29811 is medium with a score of 4.8.
3
How does the vulnerability in JetBrains Hub before 2022.1.14638 occur?
The vulnerability in JetBrains Hub before 2022.1.14638 allows for stored cross-site scripting (XSS) attacks through the project icon.
4
How can I fix the vulnerability in JetBrains Hub before 2022.1.14638?
To fix the vulnerability in JetBrains Hub before 2022.1.14638, update to version 2022.1.14638 or later.
5
Where can I find more information about this vulnerability?
You can find more information about this vulnerability at the following link: https://www.jetbrains.com/privacy-security/issues-fixed/