CVE-2022-40739
31.10.2022, 07:15
Ragic report generation page has insufficient filtering for special characters. A remote attacker with general user privilege can inject JavaScript to perform XSS (Reflected Cross-Site Scripting) attack.
Vendor | Product | Version |
---|---|---|
ragic | ragic | 𝑥 ≤ 2022-06-28 |
𝑥
= Vulnerable software versions