Skip to content

Cross-site Scripting (XSS) - Create XSS in task content

Moderate
tsmr published GHSA-3qv3-8393-777q Nov 9, 2022

Package

Plugin Tasklists (GLPI)

Affected versions

< 2.0.3

Patched versions

2.0.3

Description

Impact

What kind of vulnerability is it? Who is impacted?
Cross-site Scripting (XSS) - Create XSS in task content (when add it)

Patches

Has the problem been patched? What versions should users upgrade to?
2.0.3

Workarounds

Is there a way for users to fix or remediate the vulnerability without upgrading?

Severity

Moderate

CVE ID

CVE-2022-39398

Weaknesses

No CWEs