CVE-2022-31889: XSS
Cross Site Scripting (XSS) vulnerability in audit/templates/auditlogs.tmpl.php in osTicket osTicket-plugins before commit a7842d494889fd5533d13deb3c6a7789768795ae.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2022-31889?
The severity of CVE-2022-31889 is medium with a CVSS score of 6.1.
How does CVE-2022-31889 affect osTicket?
CVE-2022-31889 is a Cross Site Scripting (XSS) vulnerability in osTicket osTicket-plugins before commit a7842d494889fd5533d13deb3c6a7789768795ae.
What is Cross Site Scripting (XSS)?
Cross Site Scripting (XSS) is a vulnerability that allows attackers to inject malicious scripts into web pages viewed by other users.
How can I fix CVE-2022-31889?
To fix CVE-2022-31889, update osTicket osTicket-plugins to commit a7842d494889fd5533d13deb3c6a7789768795ae or later.
Where can I find more information about CVE-2022-31889?
You can find more information about CVE-2022-31889 at the following references: [1](https://checkmarx.com/blog/securing-open-source-solutions-a-study-of-osticket-vulnerabilities/) [2](https://github.com/osTicket/osTicket-plugins/commit/047a1c3ae4f12f8952bbdad8143d5b74fdac14b1)