Security Advisory

CVE-2022-47412

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-02-07 19:16:17
Last updated 2025-03-25 14:10:22
Assigner rapid7
State PUBLISHED

Description

Given a malicious document provided by an attacker, the ONLYOFFICE Workspace DMS is vulnerable to a stored (persistent, or "Type II") cross-site scripting (XSS) condition.