CVE-2022-4605: Cross-site Scripting (XSS) - Stored in flatpressblog/flatpress
Published Dec 18, 2022
·Updated
Cross-site Scripting (XSS) - Stored in GitHub repository flatpressblog/flatpress prior to 1.3.
Affected Software
1 affected component
flatpress flatpress<=1.2.1
Remediation
Event History
Dec 18, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-4605?
CVE-2022-4605 is classified as a high severity vulnerability due to its potential for exploitation through stored cross-site scripting.
2
How do I fix CVE-2022-4605?
To remediate CVE-2022-4605, upgrade Flatpress to version 1.3 or later which addresses the stored XSS vulnerability.
3
What software is affected by CVE-2022-4605?
CVE-2022-4605 affects Flatpress versions prior to 1.3, specifically up to version 1.2.1.
4
What type of vulnerability is CVE-2022-4605?
CVE-2022-4605 is a cross-site scripting (XSS) vulnerability that can allow attackers to inject malicious scripts into web pages.
5
Can CVE-2022-4605 affect my website?
Yes, if you are using a version of Flatpress prior to 1.3, your website may be vulnerable to exploitation through CVE-2022-4605.