Логотип exploitDog
bind:CVE-2022-31192
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-31192

Количество 2

Количество 2

nvd логотип

CVE-2022-31192

больше 3 лет назад

DSpace open source software is a repository application which provides durable access to digital resources. dspace-jspui is a UI component for DSpace. The JSPUI "Request a Copy" feature does not properly escape values submitted and stored from the "Request a Copy" form. This means that item requests could be vulnerable to XSS attacks. This vulnerability only impacts the JSPUI. Users are advised to upgrade. There are no known workarounds for this vulnerability.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-4wm8-c2vv-xrpq

больше 3 лет назад

JSPUI Possible Cross Site Scripting in "Request a Copy" Feature

CVSS3: 7.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-31192

DSpace open source software is a repository application which provides durable access to digital resources. dspace-jspui is a UI component for DSpace. The JSPUI "Request a Copy" feature does not properly escape values submitted and stored from the "Request a Copy" form. This means that item requests could be vulnerable to XSS attacks. This vulnerability only impacts the JSPUI. Users are advised to upgrade. There are no known workarounds for this vulnerability.

CVSS3: 7.1
0%
Низкий
больше 3 лет назад
github логотип
GHSA-4wm8-c2vv-xrpq

JSPUI Possible Cross Site Scripting in "Request a Copy" Feature

CVSS3: 7.1
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу