NA

CVE-2022-35632

Published: 29/07/2022 Updated: 04/08/2022
CVSS v3 Base Score: 4.8 | Impact Score: 2.7 | Exploitability Score: 1.7
VMScore: 0

Vulnerability Summary

The Velociraptor GUI contains an editor suggestion feature that can display the description field of a VQL function, plugin or artifact. This field was not properly sanitized and can lead to cross-site scripting (XSS). This issue was resolved in Velociraptor 0.6.5-2.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

rapid7 velociraptor