Medium severity5.4NVD Advisory· Published Feb 15, 2022· Updated Jun 17, 2026
CVE-2022-24590
CVE-2022-24590
Description
A stored cross-site scripting (XSS) vulnerability in the Add Link function of BackdropCMS v1.21.1 allows attackers to execute arbitrary web scripts or HTML.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3<=1.21.1+ 1 more
- (no CPE)range: <=1.21.1
- (no CPE)
- cpe:2.3:a:backdropcms:backdrop:1.21.1:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- github.com/Nguyen-Trung-Kien/CVE/blob/main/CVE-2022-24590/CVE-2022-24590.pdfnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.