PT-2023-15613 · Yui2 · Yui2

Ryan412

·

Published

2023-01-02

·

Updated

2024-08-03

·

CVE-2022-48197

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions YUI2 (affected versions not specified)
Description Reflected cross-site scripting (XSS) exists in Sandbox examples in the YUI2 repository. The download distributions, TreeView component, and the YUI Javascript library overall are not affected. This issue only affects products that are no longer supported by the maintainer.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XSS

Weakness Enumeration

Related Identifiers

CVE-2022-48197

Affected Products

Yui2