Medium severity4.8NVD Advisory· Published Mar 3, 2022· Updated Jun 17, 2026
CVE-2022-25220
CVE-2022-25220
Description
PeteReport Version 0.5 allows an authenticated admin user to inject persistent JavaScript code inside the markdown descriptions while creating a product, report or finding.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- PeteReport/PeteReportdescription
- Range: <0.5
Patches
Vulnerability mechanics
References
2- fluidattacks.com/advisories/armstrong/nvdExploitIssue TrackingThird Party Advisory
- github.com/1modm/petereport/issues/35nvdExploitIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.