First published: Wed Apr 30 2025(Updated: )
Improper sanitization of SVG files in HCL Domino Volt allows client-side script injection in deployed applications.
Credit: psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
HCL Domino Volt |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-42450 has been assigned a medium severity rating due to the potential for client-side script injection.
To fix CVE-2022-42450, ensure that all SVG files are properly sanitized before being implemented in HCL Domino Volt applications.
Exploitation of CVE-2022-42450 can lead to unauthorized script execution, allowing attackers to manipulate client-side applications.
CVE-2022-42450 affects all versions of HCL Domino Volt that improperly handle SVG file sanitization.
You can determine if your application is vulnerable to CVE-2022-42450 by reviewing how it handles SVG files and ensuring proper sanitization practices are in place.