5.4
CVSSv3

CVE-2022-34619

Published: 02/08/2022 Updated: 06/08/2022
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 0

Vulnerability Summary

A stored cross-site scripting (XSS) vulnerability in Mealie v0.5.5 allows malicious users to execute arbitrary web scripts or HTML via a crafted payload injected into the Shopping Lists item names text field.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mealie project mealie 0.5.5