Medium severity6.1NVD Advisory· Published Jan 31, 2023· Updated Jun 17, 2026
CVE-2022-45598
CVE-2022-45598
Description
Cross Site Scripting vulnerability in Joplin Desktop App before v2.9.17 allows attacker to execute arbitrary code via improper santization.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
joplinnpm | < 2.9.17 | 2.9.17 |
Affected products
3- Joplin/Joplin Desktop Appdescription
Patches
Vulnerability mechanics
References
4- github.com/laurent22/joplin/commit/a2de167b95debad83a0f0c7925a88c0198db812envdPatchThird Party AdvisoryWEB
- github.com/advisories/GHSA-h6c2-879r-jffhghsaADVISORY
- github.com/laurent22/joplin/releases/tag/v2.9.17nvdThird Party AdvisoryWEB
- nvd.nist.gov/vuln/detail/CVE-2022-45598ghsaADVISORY
News mentions
0No linked articles in our index yet.