CVE-2022-35630
29.07.2022, 17:15
A cross-site scripting (XSS) issue in generating a collection report made it possible for malicious clients to inject JavaScript code into the static HTML file. This issue was resolved in Velociraptor 0.6.5-2.
Vendor | Product | Version |
---|---|---|
rapid7 | velociraptor | 𝑥 < 0.6.5-2 |
𝑥
= Vulnerable software versions