CVE-2022-4581

A vulnerability was found in 1j01 mind-map and classified as problematic. This issue affects some unknown processing of the file app.coffee. The manipulation of the argument html leads to cross site scripting. The attack may be initiated remotely. The name of the patch is 9617e6084dfeccd92079ab4d7f439300a4b24394. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-216167.
Configurations

Configuration 1 (hide)

cpe:2.3:a:mind-map_project:mind-map:-:*:*:*:*:*:*:*

History

21 Nov 2024, 07:35

Type Values Removed Values Added
References () https://github.com/1j01/mind-map/commit/9617e6084dfeccd92079ab4d7f439300a4b24394 - Patch, Third Party Advisory () https://github.com/1j01/mind-map/commit/9617e6084dfeccd92079ab4d7f439300a4b24394 - Patch, Third Party Advisory
References () https://vuldb.com/?id.216167 - Third Party Advisory () https://vuldb.com/?id.216167 - Third Party Advisory
Summary
  • (es) Se encontró una vulnerabilidad en 1j01 mind-map y se clasificó como problemática. Este problema afecta un procesamiento desconocido del archivo app.coffee. La manipulación del argumento html conduce a Cross-Site Scripting. El ataque puede iniciarse de forma remota. El nombre del parche es 9617e6084dfeccd92079ab4d7f439300a4b24394. Se recomienda aplicar un parche para solucionar este problema. El identificador asociado de esta vulnerabilidad es VDB-216167.
CVSS v2 : unknown
v3 : 6.1
v2 : unknown
v3 : 3.5

Information

Published : 2022-12-17 13:15

Updated : 2024-11-21 07:35


NVD link : CVE-2022-4581

Mitre link : CVE-2022-4581

CVE.ORG link : CVE-2022-4581


JSON object : View

Products Affected

mind-map_project

  • mind-map
CWE
CWE-707

Improper Neutralization