PT-2022-18673 · Foundry · Blobster

Published

2022-11-04

·

Updated

2022-11-05

·

CVE-2022-27894

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions The Foundry Blobster versions prior to 3.228.0
Description A cross-site scripting (XSS) issue was discovered in the Foundry Blobster service, potentially allowing an attacker with access to Foundry to launch attacks against other users.
Recommendations For versions prior to 3.228.0, update to version 3.228.0 to resolve the issue.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2022-27894

Affected Products

Blobster