CVE-2022-34133: XSS
Published Jun 27, 2022
·Updated
Benjamin BALET Jorani v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the Comment parameter at application/controllers/Leaves.php.
Affected Software
2 affected components
Jorani Project Jorani=1.0.0
Jorani Jorani=1.0.0
Remediation
Event History
Jun 27, 2022
CVE Published
via MITRE·11:09 PM
Data Sourced
via MITRE·11:09 PM
Description
Jun 28, 2022
Data Sourced
via NVD·12:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2022-34133.
2
What is the severity of CVE-2022-34133?
The severity of CVE-2022-34133 is medium.
3
What is the CWE category of CVE-2022-34133?
The CWE category of CVE-2022-34133 is CWE-79 (Cross-Site Scripting).
4
Which software versions are affected by CVE-2022-34133?
Jorani v1.0.0 is affected by CVE-2022-34133.
5
How can I fix the cross-site scripting vulnerability?
To fix the cross-site scripting vulnerability, update Jorani to a version that contains the fix.