Lucene search

K
cvelistMitreCVELIST:CVE-2022-36600
HistorySep 02, 2022 - 4:05 a.m.

CVE-2022-36600

2022-09-0204:05:50
mitre
www.cve.org
cve-2022-36600
cross-site scripting
blogengine

0.001 Low

EPSS

Percentile

24.8%

BlogEngine v3.3.8.0 was discovered to contain a cross-site scripting (XSS) vulnerability in the component /blogengine/api/posts. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Description field.

0.001 Low

EPSS

Percentile

24.8%

Related for CVELIST:CVE-2022-36600