Security Advisory

CVE-2022-36304

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-07-19 18:20:01
Last updated 2024-08-03 10:00:04
Assigner mitre
State PUBLISHED

Description

Vesta v1.0.0-5 was discovered to contain a cross-site scripting (XSS) vulnerability via the generate_response function at /web/api/v1/upload/UploadHandler.php.