CVE-2022-24229

Publication date

2022-04-08 11:06:58

Family

mitre

State

PUBLISHED

Description

A cross-site scripting (XSS) vulnerability in ONLYOFFICE Document Server Example before v7.0.0 allows remote attackers inject arbitrary HTML or JavaScript through /example/editor.