First published: Tue Oct 11 2022(Updated: )
Flatpress v1.2.1 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the page parameter at /flatpress/admin.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
openMairie Openpresse | =1.2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-40047 is classified as a moderate severity reflected cross-site scripting vulnerability.
To fix CVE-2022-40047, update Flatpress to a version that addresses the XSS vulnerability.
CVE-2022-40047 affects Flatpress version 1.2.1 specifically.
CVE-2022-40047 is a reflected cross-site scripting vulnerability that can allow attackers to inject malicious scripts.
The potential impact of CVE-2022-40047 includes the execution of arbitrary script code in the user's browser, leading to session hijacking or data theft.