Exceedone · Exment · CVE-2022-38089
**Name of the Vulnerable Software and Affected Versions**
exceedone/exment versions 5.0.2 and earlier
exceedone/laravel-admin versions 3.0.0 and earlier
exceedone/exment versions 4.4.2 and earlier
exceedone/laravel-admin versions 2.2.2 and earlier
**Description**
A stored cross-site scripting issue allows a remote authenticated attacker to inject an arbitrary script. This can be exploited by a remote authenticated attacker.
**Recommendations**
For exceedone/exment versions 5.0.2 and earlier, update to a version later than 5.0.2.
For exceedone/laravel-admin versions 3.0.0 and earlier, update to a version later than 3.0.0.
For exceedone/exment versions 4.4.2 and earlier, update to a version later than 4.4.2.
For exceedone/laravel-admin versions 2.2.2 and earlier, update to a version later than 2.2.2.