CVE-2022-4413: Cross-site Scripting (XSS) - Reflected in nuxt/framework
Published Dec 11, 2022
·Updated
Cross-site Scripting (XSS) - Reflected in GitHub repository nuxt/framework prior to v3.0.0-rc.13.
Affected Software
12 affected components
Nuxt framework=3.0.0-rc1
Nuxt framework=3.0.0-rc10
Nuxt framework=3.0.0-rc11
Nuxt framework=3.0.0-rc12
Nuxt framework=3.0.0-rc2
Nuxt framework=3.0.0-rc3
Nuxt framework=3.0.0-rc4
Nuxt framework=3.0.0-rc5
Nuxt framework=3.0.0-rc6
Nuxt framework=3.0.0-rc7
Nuxt framework=3.0.0-rc8
Nuxt framework=3.0.0-rc9
Remediation
Event History
Dec 11, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Dec 12, 2022
Data Sourced
via NVD·12:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2022-4413.
2
What is the severity of CVE-2022-4413?
The severity of CVE-2022-4413 is medium.
3
What software versions are affected by CVE-2022-4413?
The software versions affected by CVE-2022-4413 are Nuxt Framework prior to v3.0.0-rc.13.
4
How can I fix CVE-2022-4413?
To fix CVE-2022-4413, update the affected software to version v3.0.0-rc.13 or later.
5
What is Cross-site Scripting (XSS)?
Cross-site Scripting (XSS) is a type of vulnerability that allows attackers to inject malicious scripts into web pages viewed by other users.