A vulnerability has been found in automad up to 1.10.9 and classified as problematic. This vulnerability affects the Dashboard. The manipulation of the argument title with the input Home</title><script>alert("home")</script><title> leads to a cross site scripting. The attack can be initiated remotely but requires an authentication. The exploit details have disclosed to the public and may be used.
History

Tue, 15 Apr 2025 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2025-04-15T14:40:54.853Z

Reserved: 2022-04-29T00:00:00.000Z

Link: CVE-2022-1536

cve-icon Vulnrichment

Updated: 2024-08-03T00:10:03.590Z

cve-icon NVD

Status : Modified

Published: 2022-04-29T13:15:08.430

Modified: 2024-11-21T06:40:55.363

Link: CVE-2022-1536

cve-icon Redhat

No data.