Lucene search

K
cvelistMitreCVELIST:CVE-2022-27920
HistoryMar 25, 2022 - 8:00 p.m.

CVE-2022-27920

2022-03-2520:00:38
mitre
www.cve.org
1
libkiwix
xss
vulnerability
webserver

EPSS

0.001

Percentile

30.9%

libkiwix 10.0.0 and 10.0.1 allows XSS in the built-in webserver functionality via the search suggestions URL parameter. This is fixed in 10.1.0.

EPSS

0.001

Percentile

30.9%