Executive brief
Cross-site Scripting (XSS) - Reflected in GitHub repository beancount/fava prior to 1.22.3.
Affected products
- PyPI fava
Junglewise Threat Intelligence
CVE-2022-2589 · Severity: low · CVSS 3.1 · Published 2022-08-01
Technologies: fava (PyPI). Vendors: PyPI.
Cross-site Scripting (XSS) - Reflected in GitHub repository beancount/fava prior to 1.22.3.