CVE-2022-1345

Publication date

2022-04-13 18:10:18

Family

@huntrdev

State

PUBLISHED

Description

Stored XSS viva .svg file upload in GitHub repository causefx/organizr prior to 2.1.1810. This allows attackers to execute malicious scripts in the users browser and it can lead to session hijacking, sensitive data exposure, and worse.