VYPR
Medium severity6.1NVD Advisory· Published Apr 25, 2022· Updated Jun 17, 2026

CVE-2022-28586

CVE-2022-28586

Description

XSS in edit page of Hoosk 1.8.0 allows attacker to execute javascript code in user browser via edit page with XSS payload bypass filter some special chars.

Affected products

3
  • Hoosk/Hoosk2 versions
    cpe:2.3:a:hoosk:hoosk:1.8.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:hoosk:hoosk:1.8.0:*:*:*:*:*:*:*
    • (no CPE)range: =1.8.0
  • Hoosk/Hooskdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.