Unrated severityNVD Advisory· Published Apr 13, 2022· Updated Aug 3, 2024
Stored XSS in the "Username" & "Email" input fields leads to account takeover of Admin & Co-admin users in causefx/organizr
CVE-2022-1347
Description
Stored XSS in the "Username" & "Email" input fields leads to account takeover of Admin & Co-admin users in GitHub repository causefx/organizr prior to 2.1.1810. Account takeover and privilege escalation
Affected products
1- Range: unspecified
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- github.com/causefx/organizr/commit/a09d834d995599756b62016af7026d2408ecf43amitrex_refsource_MISC
- huntr.dev/bounties/6059501f-05d2-4e76-ae03-5eb64835e6bfmitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.