Medium severity6.1NVD Advisory· Published Oct 31, 2022· Updated Jun 17, 2026
CVE-2022-40290
CVE-2022-40290
Description
The application was vulnerable to an unauthenticated Reflected Cross-Site Scripting (XSS) vulnerability in the barcode generation functionality, allowing attackers to generate an unsafe link that could compromise users.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- cpe:2.3:a:phppointofsale:php_point_of_sale:19.0:*:*:*:*:*:*:*
- PHP Point of Sale LLC/PHP Point of Salev5Range: 0
Patches
Vulnerability mechanics
References
1- www.themissinglink.com.au/security-advisories/cve-2022-40290nvdThird Party Advisory
News mentions
0No linked articles in our index yet.