Security Advisory

CVE-2022-47415

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-02-07 21:33:56
Last updated 2025-03-25 14:09:43
Assigner rapid7
State PUBLISHED

Description

LogicalDOC Enterprise and Community Edition (CE) are vulnerable to a stored (persistent, or "Type II") cross-site scripting (XSS) condition in the in-app messaging system (both subject and message bodies).