Executive brief
Cross-site Scripting (XSS) - Reflected in GitHub repository beancount/fava prior to 1.22.2.
Affected products
- PyPI fava
Junglewise Threat Intelligence
CVE-2022-2523 · Severity: low · CVSS 3.1 · Published 2022-07-25
Technologies: fava (PyPI). Vendors: PyPI.
Cross-site Scripting (XSS) - Reflected in GitHub repository beancount/fava prior to 1.22.2.