CVE-2022-26494
21.03.2022, 15:15
An XSS was identified in the Admin Web interface of PrimeKey SignServer before 5.8.1. JavaScript code must be used in a worker name before a Generate CSR request. Only an administrator can update a worker name.
Vendor | Product | Version |
---|---|---|
primekey | signserver | 𝑥 < 5.8.1 |
𝑥
= Vulnerable software versions
References