Skip to main content

CVE-2022-48197

Description

Reflected cross-site scripting (XSS) exists in Sandbox examples in the YUI2 repository. The download distributions, TreeView component and the YUI Javascript library overall are not affected. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

nvd
CVE ID: CVE-2022-48197
Base Score: 6.1
Base Severity: MEDIUM
Vector String:CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Impact Score: 2.7
Exploitability Score: 2.8

Proof Of Concept

Nuclei Templates for CVE-2022-48197
ryan412

Refrence: GitHub

Refrence: NVDMITRE