CVE-2022-31655: XSS
Published Jul 12, 2022
·Updated
VMware vRealize Log Insight in versions prior to 8.8.2 contain a stored cross-site scripting vulnerability due to improper input sanitization in alerts.
Affected Software
1 affected component
VMware vRealize Log Insight<8.8.2
Remediation
Event History
Jul 12, 2022
CVE Published
via MITRE·08:44 PM
Data Sourced
via MITRE·08:44 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for VMware vRealize Log Insight?
The vulnerability ID for VMware vRealize Log Insight is CVE-2022-31655.
2
What is the severity of CVE-2022-31655?
The severity of CVE-2022-31655 is medium (5.4).
3
What is the affected software for CVE-2022-31655?
The affected software for CVE-2022-31655 is VMware vRealize Log Insight, versions prior to 8.8.2.
4
What is the description of CVE-2022-31655?
CVE-2022-31655 is a stored cross-site scripting vulnerability in VMware vRealize Log Insight, versions prior to 8.8.2, due to improper input sanitization in alerts.
5
How can I fix CVE-2022-31655?
To fix CVE-2022-31655, it is recommended to update VMware vRealize Log Insight to version 8.8.2 or later.