CVE-2022-42094: XSS
Published Nov 22, 2022
·Updated
Backdrop CMS version 1.23.0 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the 'Card' content.
Affected Software
2 affected components
BackdropCMS Backdrop=1.23.0
composer/backdrop/backdrop<=1.23.0
Event History
Nov 22, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Advisory Published
via GitHub·03:30 PM
Frequently Asked Questions
1
What is CVE-2022-42094?
CVE-2022-42094 is a stored cross-site scripting (XSS) vulnerability in Backdrop CMS version 1.23.0.
2
How severe is CVE-2022-42094?
CVE-2022-42094 has a severity score of 4.8, which is considered medium.
3
How does CVE-2022-42094 affect Backdrop CMS?
CVE-2022-42094 affects Backdrop CMS version 1.23.0 through a stored cross-site scripting (XSS) vulnerability in the 'Card' content.
4
How can I fix CVE-2022-42094?
To fix CVE-2022-42094, you should update to a patched version of Backdrop CMS.
5
Where can I find more information about CVE-2022-42094?
You can find more information about CVE-2022-42094 on the Backdrop CMS official website and the GitHub release page for version 1.23.0.