First published: Sun Dec 11 2022(Updated: )
Cross-site Scripting (XSS) - DOM in GitHub repository nuxt/framework prior to v3.0.0-rc.13.
Credit: security@huntr.dev security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Nuxt Framework | =3.0.0-rc1 | |
Nuxt Framework | =3.0.0-rc10 | |
Nuxt Framework | =3.0.0-rc11 | |
Nuxt Framework | =3.0.0-rc12 | |
Nuxt Framework | =3.0.0-rc2 | |
Nuxt Framework | =3.0.0-rc3 | |
Nuxt Framework | =3.0.0-rc4 | |
Nuxt Framework | =3.0.0-rc5 | |
Nuxt Framework | =3.0.0-rc6 | |
Nuxt Framework | =3.0.0-rc7 | |
Nuxt Framework | =3.0.0-rc8 | |
Nuxt Framework | =3.0.0-rc9 | |
=3.0.0-rc1 | ||
=3.0.0-rc10 | ||
=3.0.0-rc11 | ||
=3.0.0-rc12 | ||
=3.0.0-rc2 | ||
=3.0.0-rc3 | ||
=3.0.0-rc4 | ||
=3.0.0-rc5 | ||
=3.0.0-rc6 | ||
=3.0.0-rc7 | ||
=3.0.0-rc8 | ||
=3.0.0-rc9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-4414 is a Cross-site Scripting (XSS) vulnerability in the nuxt/framework GitHub repository prior to v3.0.0-rc.13.
The severity of CVE-2022-4414 is medium with a CVSS score of 6.1.
The affected software for CVE-2022-4414 is Nuxt Framework versions 3.0.0-rc1 to 3.0.0-rc12.
To fix CVE-2022-4414, you should update to Nuxt Framework v3.0.0-rc.13 or later.
You can find more information about CVE-2022-4414 in the references: [GitHub Commit](https://github.com/nuxt/framework/commit/19a2cd14929ca9b55720cb81f71687830a9e59a4), [Huntr.dev Bounty](https://huntr.dev/bounties/131a41e5-c936-4c3f-84fc-e0e1f0e090b5).