Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4rrq-73x5-wj26

Опубликовано: 21 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 4.8

Описание

Improper Encoding or Escaping of Output vulnerability in Apache CloudStack's UI while using Lock User Functionality.

This issue affects Apache CloudStack: from 4.20.0.0 through 4.20.3.0 and from 4.21.0.0 through 4.22.1.0.

Users are recommended to upgrade to version 4.20.3.1 or 4.22.1.1 or later, which fixes the issue.

Improper Encoding or Escaping of Output vulnerability in Apache CloudStack's UI while using Lock User Functionality.

This issue affects Apache CloudStack: from 4.20.0.0 through 4.20.3.0 and from 4.21.0.0 through 4.22.1.0.

Users are recommended to upgrade to version 4.20.3.1 or 4.22.1.1 or later, which fixes the issue.

EPSS

Процентиль: 21%
0.00282
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-116

Связанные уязвимости

CVSS3: 4.8
nvd
около 1 месяца назад

Improper Encoding or Escaping of Output vulnerability in Apache CloudStack's UI while using Lock User Functionality. This issue affects Apache CloudStack: from 4.20.0.0 through 4.20.3.0 and from 4.21.0.0 through 4.22.1.0. Users are recommended to upgrade to version 4.20.3.1 or 4.22.1.1 or later, which fixes the issue.

EPSS

Процентиль: 21%
0.00282
Низкий

4.8 Medium

CVSS3

Дефекты

CWE-116