CVE-2022-35632
29.07.2022, 17:15
The Velociraptor GUI contains an editor suggestion feature that can display the description field of a VQL function, plugin or artifact. This field was not properly sanitized and can lead to cross-site scripting (XSS). This issue was resolved in Velociraptor 0.6.5-2.
Vendor | Product | Version |
---|---|---|
rapid7 | velociraptor | 𝑥 < 0.6.5-2 |
𝑥
= Vulnerable software versions