CVE-2022-4407: phpMyFAQ vulnerable to Cross-site Scripting
(updated )
phpMyFAQ prior to version 3.1.9 is vulnerable to reflected Cross-site Scripting (XSS).
References
- github.com/MarkLee131/awesome-web-pocs/blob/main/CVE-2022-4407.md
- github.com/advisories/GHSA-cp9c-phxx-55xm
- github.com/thorsten/phpmyfaq
- github.com/thorsten/phpmyfaq/commit/1d73af34bf42764f9f9491c7ba5e9495d70e3ca5
- huntr.dev/bounties/a1649f43-78c9-4927-b313-36911872a84b
- nvd.nist.gov/vuln/detail/CVE-2022-4407
Code Behaviors & Features
Detect and mitigate CVE-2022-4407 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →