Snipe-It · Snipe-It · CVE-2022-3035
**Name of the Vulnerable Software and Affected Versions**
snipe-it versions prior to 6.0.11
**Description**
The issue is related to a Cross-site Scripting (XSS) - Stored vulnerability. It exists due to inadequate protection of the web page structure, allowing a remote attacker to conduct an inter-site scripting attack.
**Recommendations**
For versions prior to 6.0.11, update to version 6.0.11 or later to resolve the issue. As a temporary workaround, consider restricting access to potentially vulnerable web pages until the update is applied.