CVE-2022-23060
01.05.2022, 13:15
A Stored Cross Site Scripting (XSS) vulnerability exists in Shopizer versions 2.0 through 2.17.0, where a privileged user (attacker) can inject malicious JavaScript in the filename under the Manage files tab
Vendor | Product | Version |
---|---|---|
shopizer | shopizer | 2.0 ≤ 𝑥 ≤ 2.17.0 |
𝑥
= Vulnerable software versions
References