CVE-2022-29890
15.07.2022, 08:15
In affected versions of Octopus Server the help sidebar can be customized to include a Cross-Site Scripting payload in the support link.
Vendor | Product | Version |
---|---|---|
octopus | octopus_server | 2019.7.0 ≤ 𝑥 < 2021.3.13021 |
octopus | octopus_server | 2022.1.2121 ≤ 𝑥 < 2022.1.2849 |
octopus | octopus_server | 2022.3.348 ≤ 𝑥 < 2022.3.2387 |
octopus | octopus_server | 2022.2.6729 |
𝑥
= Vulnerable software versions