CVE-2022-3895
15.11.2022, 15:15
Some UI elements of the Common User Interface Component are not properly sanitizing output and therefore prone to output arbitrary HTML (XSS).
Vendor | Product | Version |
---|---|---|
hallowelt | bluespice | 4.1.0 ≤ 𝑥 < 4.2.1 |
hallowelt | common_user_interface | 3.0.0 ≤ 𝑥 < 3.0.5 |
𝑥
= Vulnerable software versions