← Back to CVE List

CVE-2022-43670

Published: 2022-11-02T13:15Z
Last Modified: 2024-11-21T07:27Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An improper neutralization of input during web page generation ('Cross-site Scripting') [CWE-79] vulnerability in Sling App CMS version 1.1.0 and prior may allow an authenticated remote attacker to perform a reflected cross site scripting (XSS) attack in the taxonomy management feature. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt