ZeroHour

CVE-2022-38653

CVSS 3.1
5.4 medium
EPSS
<1%p22
Published
()
Modified
Description

In HCL Digital Experience, customized XSS payload can be constructed such that it is served in the application unencoded.

Vendors
hcltech
Products
digital experience
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.