CVE-2022-25037
Severity CVSS v4.0:
Pending analysis
Type:
CWE-79
Cross-Site Scripting (XSS)
Publication date:
31/05/2024
Last modified:
19/08/2024
Description
An issue in wanEditor v4.7.11 and fixed in v.4.7.12 and v.5 was discovered to contain a cross-site scripting (XSS) vulnerability via the image upload function.
Impact
Base Score 3.x
5.40
Severity 3.x
MEDIUM



