Medium severity6.1NVD Advisory· Published Apr 13, 2022· Updated Jun 17, 2026
CVE-2022-27503
CVE-2022-27503
Description
Cross-site Scripting (XSS) vulnerability in Citrix StoreFront affects version 1912 before CU5 and version 3.12 before CU9
Affected products
4cpe:2.3:a:citrix:storefront_server:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:citrix:storefront_server:*:*:*:*:*:*:*:*range: >=3.12,<3.12.9000
- cpe:2.3:a:citrix:storefront_server:*:*:*:*:ltsr:*:*:*range: >=1912,<1912.0.5000
- (no CPE)range: 1912
- Range: < 1912 CU5, < 3.12 CU9
Patches
Vulnerability mechanics
References
1- support.citrix.com/article/CTX377814nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.