Medium severity4.8NVD Advisory· Published Aug 29, 2022· Updated Jun 17, 2026
CVE-2022-3035
CVE-2022-3035
Description
Cross-site Scripting (XSS) - Stored in GitHub repository snipe/snipe-it prior to v6.0.11.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
snipe/snipe-itPackagist | < 6.0.11 | 6.0.11 |
Affected products
3cpe:2.3:a:snipeitapp:snipe-it:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:snipeitapp:snipe-it:*:*:*:*:*:*:*:*range: <6.0.11
- (no CPE)range: unspecified
Patches
Vulnerability mechanics
References
4- github.com/snipe/snipe-it/commit/9cf5f30c77df6ab60baab1c0e6bb0b4e773f0eaenvdPatchThird Party AdvisoryWEB
- huntr.dev/bounties/0bbb1046-ea9e-4cb9-bc91-b294a72d1902nvdExploitPatchThird Party AdvisoryWEB
- github.com/advisories/GHSA-rff2-vqm3-jpv5ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2022-3035ghsaADVISORY
News mentions
0No linked articles in our index yet.