Vulnerability Description
In openlibrary versions deploy-2016-07-0 through deploy-2021-12-22 are vulnerable to Reflected XSS.
CVSS Score
4.3
MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Openlibrary | Openlibrary | >= 2016-07-0, <= 2021-12-22 |
Related Weaknesses (CWE)
References
- https://github.com/internetarchive/openlibrary/pull/6597/commits/5460c8e8b517ef8Patch
- https://www.mend.io/vulnerability-database/CVE-2022-23081ExploitThird Party Advisory
- https://github.com/internetarchive/openlibrary/pull/6597/commits/5460c8e8b517ef8Patch
- https://www.mend.io/vulnerability-database/CVE-2022-23081ExploitThird Party Advisory
FAQ
What is CVE-2022-23081?
CVE-2022-23081 is a vulnerability with a CVSS score of 4.3 (MEDIUM). In openlibrary versions deploy-2016-07-0 through deploy-2021-12-22 are vulnerable to Reflected XSS.
How severe is CVE-2022-23081?
CVE-2022-23081 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-23081?
Check the references section above for vendor advisories and patch information. Affected products include: Openlibrary Openlibrary.