Medium severity6.1NVD Advisory· Published Aug 23, 2022· Updated Jun 17, 2026
CVE-2022-38463
CVE-2022-38463
Description
ServiceNow through San Diego Patch 4b and Patch 6 allows reflected XSS in the logout functionality.
Affected products
5cpe:2.3:a:servicenow:servicenow:san_diego:patch_4:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:servicenow:servicenow:san_diego:patch_4:*:*:*:*:*:*
- cpe:2.3:a:servicenow:servicenow:san_diego:patch_4a:*:*:*:*:*:*
- cpe:2.3:a:servicenow:servicenow:san_diego:patch_6:*:*:*:*:*:*
- (no CPE)
- (no CPE)range: <=San Diego Patch 4b, <=San Diego Patch 6
Patches
Vulnerability mechanics
References
1- support.servicenow.com/kbnvdVendor Advisory
News mentions
0No linked articles in our index yet.