Medium severity5.4NVD Advisory· Published May 16, 2022· Updated Jun 17, 2026
CVE-2022-30013
CVE-2022-30013
Description
A stored cross-site scripting (XSS) vulnerability in the upload function of totaljs CMS 3.4.5 allows attackers to execute arbitrary web scripts via a JavaScript embedded PDF file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
1- www.youtube.com/watchnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.