First published: Tue Jul 12 2022(Updated: )
VMware vRealize Log Insight in versions prior to 8.8.2 contain a stored cross-site scripting vulnerability due to improper input sanitization in configurations.
Credit: security@vmware.com
Affected Software | Affected Version | How to fix |
---|---|---|
VMware vRealize Log Insight | <8.8.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2022-31654.
The severity of CVE-2022-31654 is medium with a CVSS score of 5.4.
VMware vRealize Log Insight versions prior to 8.8.2 are affected by CVE-2022-31654.
CVE-2022-31654 is a stored cross-site scripting (XSS) vulnerability that occurs due to improper input sanitization in configurations.
Yes, the fix for CVE-2022-31654 is available in VMware vRealize Log Insight version 8.8.2.