First published: Mon Mar 27 2023(Updated: )
In JetBrains Hub before 2022.3.15573, 2022.2.15572, 2022.1.15583 reflected XSS in dashboards was possible
Credit: security@jetbrains.com
Affected Software | Affected Version | How to fix |
---|---|---|
JetBrains Hub | <2022.1.15583 | |
JetBrains Hub | >=2022.2<2022.2.15572 | |
JetBrains Hub | >=2022.3<2022.3.15573 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2022-48429.
The severity of CVE-2022-48429 is medium with a CVSS score of 5.4.
JetBrains Hub versions up to 2022.1.15583, 2022.2,15572, and 2022.3.15573 are affected by CVE-2022-48429.
The CWE ID for this vulnerability is CWE-79.
Yes, a fix is available for CVE-2022-48429. Update JetBrains Hub to version 2022.3.15573, 2022.2.15572, or 2022.1.15583 to address the vulnerability.