Unrated severityNVD Advisory· Published Apr 13, 2022· Updated Aug 3, 2024
Stored XSS due to no sanitization in the filename in causefx/organizr
CVE-2022-1344
Description
Stored XSS due to no sanitization in the filename in GitHub repository causefx/organizr prior to 2.1.1810. This allows attackers to execute malicious scripts in the user's browser and it can lead to session hijacking, sensitive data exposure, and worse.
Affected products
1- Range: unspecified
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- github.com/causefx/organizr/commit/a09d834d995599756b62016af7026d2408ecf43amitrex_refsource_MISC
- huntr.dev/bounties/35f66966-af13-4f07-9734-0c50fdfc3a8cmitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.