First published: Wed Aug 17 2022(Updated: )
kkFileView v4.1.0 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities via the urls and currentUrl parameters at /controller/OnlinePreviewController.java.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
kkFileView | =4.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for kkFileView v4.1.0 is CVE-2022-35151.
The severity of CVE-2022-35151 is medium with a CVSS score of 6.1.
The affected software for CVE-2022-35151 is kkFileView v4.1.0.
CVE-2022-35151 affects kkFileView v4.1.0 with multiple cross-site scripting (XSS) vulnerabilities via the urls and currentUrl parameters in the OnlinePreviewController.java file.
At this time, there is no available fix for CVE-2022-35151. It is recommended to monitor the official GitHub repository for any updates or patches.