Medium severity6.1NVD Advisory· Published Jan 2, 2023· Updated Jun 17, 2026
CVE-2022-48197
CVE-2022-48197
Description
Reflected cross-site scripting (XSS) exists in Sandbox examples in the YUI2 repository. The download distributions, TreeView component and the YUI Javascript library overall are not affected. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- YUI2 repository/YUI Javascript librarydescription
Patches
Vulnerability mechanics
References
5- github.com/ryan412/CVE-2022-48197/blob/main/README.mdnvdThird Party Advisory
- github.com/yui/yui2/tagsnvdThird Party Advisory
- packetstormsecurity.com/files/171633/Yahoo-User-Interface-TreeView-2.8.2-Cross-Site-Scripting.htmlnvd
- github.com/yui/yui2/blob/yui2-2.8.2-8/sandbox/treeview/inc-rightbar.phpnvd
- literatejava.com/security/is-it-really-a-cve-reported-xss-in-yui-2-8-2/nvd
News mentions
0No linked articles in our index yet.