Medium severity6.1NVD Advisory· Published Nov 7, 2022· Updated Jun 17, 2026
CVE-2022-3873
CVE-2022-3873
Description
Cross-site Scripting (XSS) - DOM in GitHub repository jgraph/drawio prior to 20.5.2.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- jgraph/jgraph/drawiov5Range: unspecified
Patches
Vulnerability mechanics
References
2- github.com/jgraph/drawio/commit/d37894baf125430e85840c2635563b10d1a6523dnvdPatchThird Party Advisory
- huntr.dev/bounties/52a4085e-b687-489b-9ed6-f0987583ed77nvdExploitPatchThird Party Advisory
News mentions
0No linked articles in our index yet.