CVE-2022-40841
21.12.2022, 18:15
A cross-site scripting (XSS) vulnerability in NdkAdvancedCustomizationFields v3.5.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payloads injected into the "htmlNodes" parameter.
Vendor | Product | Version |
---|---|---|
ndk-design | ndkadvancedcustomizationfields | 𝑥 ≤ 3.5.0 |
𝑥
= Vulnerable software versions