VYPR

Apache Sling Engine

by Apache

CVEs (1)

  • CVE-2022-45064HigApr 13, 2023
    risk 0.52cvss 8.0epss 0.01

    The SlingRequestDispatcher doesn't correctly implement the RequestDispatcher API resulting in a generic type of include-based cross-site scripting issues on the Apache Sling level. The vulnerability is exploitable by an attacker that is able to include a resource with specific…