7.5
CVSSv3

CVE-2022-42188

Published: 18/10/2022 Updated: 20/10/2022
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

In Lavalite 9.0.0, the XSRF-TOKEN cookie is vulnerable to path traversal attacks, enabling read access to arbitrary files on the server.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

lavalite lavalite 9.0.0