Critical severity9.6NVD Advisory· Published Dec 15, 2022· Updated Jun 17, 2026
CVE-2022-40004
CVE-2022-40004
Description
Cross Site Scripting (XSS) vulnerability in Things Board 3.4.1 allows remote attackers to escalate privilege via crafted URL to the Audit Log.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Things Board/Things Boarddescription
- Range: <3.4.1
Patches
Vulnerability mechanics
References
1- gist.github.com/s3d113/bba63da007fcbe243615dd2a81690ffbnvdThird Party Advisory
News mentions
0No linked articles in our index yet.