Junglewise Threat Intelligence

CVE-2022-2589: PYSEC-2022-246 - Cross-site Scripting (XSS) - Reflected in GitHub repository beancount/fava prior to 1.22.3.

CVE-2022-2589 · Severity: low · CVSS 3.1 · Published 2022-08-01

Technologies: fava (PyPI). Vendors: PyPI.

Executive brief

Cross-site Scripting (XSS) - Reflected in GitHub repository beancount/fava prior to 1.22.3.

Affected products

  • PyPI fava

Related threats