Junglewise Threat Intelligence

CVE-2022-2523: PYSEC-2022-240 - Cross-site Scripting (XSS) - Reflected in GitHub repository beancount/fava prior to 1.22.2.

CVE-2022-2523 · Severity: low · CVSS 3.1 · Published 2022-07-25

Technologies: fava (PyPI). Vendors: PyPI.

Executive brief

Cross-site Scripting (XSS) - Reflected in GitHub repository beancount/fava prior to 1.22.2.

Affected products

  • PyPI fava

Related threats