Lucene search

K
osvGoogleOSV:CVE-2022-28588
HistoryMay 03, 2022 - 6:15 p.m.

CVE-2022-28588

2022-05-0318:15:08
Google
osv.dev
6
springbootmovie
insecure input
stored xss
security vulnerability

AI Score

6.8

Confidence

High

EPSS

0.001

Percentile

24.8%

In SpringBootMovie <=1.2 when adding movie names, malicious code can be stored because there are no filtering parameters, resulting in stored XSS.

AI Score

6.8

Confidence

High

EPSS

0.001

Percentile

24.8%

Related for OSV:CVE-2022-28588