CVE-2022-25220

Publication date

2022-03-03 21:57:46

Family

Fluid Attacks

State

PUBLISHED

Description

PeteReport Version 0.5 allows an authenticated admin user to inject persistent JavaScript code inside the markdown descriptions while creating a product, report or finding.