CVE-2022-38723

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
03/01/2023
Last modified:
10/04/2025

Description

Gravitee API Management before 3.15.13 allows path traversal through HTML injection.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gravitee:api_management:*:*:*:*:*:*:*:* 3.15.3 (excluding)