Medium severity6.6NVD Advisory· Published Jan 28, 2022· Updated Jun 17, 2026
CVE-2022-22791
CVE-2022-22791
Description
SYNEL - eharmony Authenticated Blind & Stored XSS. Inject JS code into the "comments" field could lead to potential stealing of cookies, loading of HTML tags and JS code onto the system.
Affected products
3Patches
Vulnerability mechanics
References
1- www.gov.il/en/departments/faq/cve_advisoriesnvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.