CVE-2022-23367
14.02.2022, 18:15
Fulusso v1.1 was discovered to contain a DOM-based cross-site scripting (XSS) vulnerability in /BindAccount/SuccessTips.js. This vulnerability allows attackers to inject malicious code into a victim user's device via open redirection.
Vendor | Product | Version |
---|---|---|
fulusso_project | fulusso | 1.1 |
𝑥
= Vulnerable software versions