CVE-2022-40739
31.10.2022, 07:15
Ragic report generation page has insufficient filtering for special characters. A remote attacker with general user privilege can inject JavaScript to perform XSS (Reflected Cross-Site Scripting) attack.
| Vendor | Product | Version |
|---|---|---|
| ragic | ragic | 𝑥 ≤ 2022-06-28 |
𝑥
= Vulnerable software versions