Логотип exploitDog
bind:CVE-2022-32533
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-32533

Количество 2

Количество 2

nvd логотип

CVE-2022-32533

больше 3 лет назад

Apache Jetspeed-2 does not sufficiently filter untrusted user input by default leading to a number of issues including XSS, CSRF, XXE, and SSRF. Setting the configuration option "xss.filter.post = true" may mitigate these issues. NOTE: Apache Jetspeed is a dormant project of Apache Portals and no updates will be provided for this issue

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-h975-r69h-4w9p

больше 3 лет назад

Insufficient user input in Apache Jetspeed-2

CVSS3: 9.8
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-32533

Apache Jetspeed-2 does not sufficiently filter untrusted user input by default leading to a number of issues including XSS, CSRF, XXE, and SSRF. Setting the configuration option "xss.filter.post = true" may mitigate these issues. NOTE: Apache Jetspeed is a dormant project of Apache Portals and no updates will be provided for this issue

CVSS3: 9.8
12%
Средний
больше 3 лет назад
github логотип
GHSA-h975-r69h-4w9p

Insufficient user input in Apache Jetspeed-2

CVSS3: 9.8
12%
Средний
больше 3 лет назад

Уязвимостей на страницу