Medium severity4.8NVD Advisory· Published Mar 21, 2022· Updated Jun 17, 2026
CVE-2022-26494
CVE-2022-26494
Description
An XSS was identified in the Admin Web interface of PrimeKey SignServer before 5.8.1. JavaScript code must be used in a worker name before a Generate CSR request. Only an administrator can update a worker name.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- PrimeKey/SignServerdescription
- Range: <5.8.1
- Range: <5.8.1
Patches
Vulnerability mechanics
References
4News mentions
0No linked articles in our index yet.