CVE-2022-23378
A Cross-Site Scripting (XSS) vulnerability exists within the 3.2.2 version of TastyIgniter. The "items%5B0%5D%5Bpath%5D" parameter of a request made to /admin/allergens/edit/1 is vulnerable.
- Affected products
- Tastyigniter
- Tastyigniter
- = 3.2.2
- CVSS 3.1
- 5.4 MEDIUM
- EPSS
- 1.1% (64th percentile)
- Weakness
- CWE-79
- NVD status
- Modified
- Published
- 2022-02-09
CVE-2022-23378 at NVD
2 known exploits for CVE-2022-23378
Proof-of-concept code and exploit modules indexed by Sploitus