CVE-2022-1590

Source
https://cve.org/CVERecord?id=CVE-2022-1590
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-1590.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2022-1590
Published
2022-05-05T09:20:10Z
Modified
2026-08-12T03:51:21Z
Severity
  • 3.5 (Low) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N CVSS Calculator
Summary
Bludit New Content Module new-content cross site scripting
Details

A vulnerability was found in Bludit 3.13.1. It has been declared as problematic. This vulnerability affects the endpoint /admin/new-content of the New Content module. The manipulation of the argument content with the input leads to cross site scripting. The attack can be initiated remotely but requires an authentication. The exploit has been disclosed to the public and may be used.

Database specific
{
    "cna_assigner": "VulDB",
    "cwe_ids": [
        "CWE-79"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/1xxx/CVE-2022-1590.json",
    "unresolved_ranges": [
        {
            "extracted_events": [
                {
                    "introduced": "3.13.1"
                },
                {
                    "last_affected": "3.13.1"
                }
            ],
            "source": "AFFECTED_FIELD"
        }
    ]
}
References

Affected packages

Git / github.com/bludit/bludit

Affected ranges

Type
GIT
Repo
https://github.com/bludit/bludit
Events
Database specific
Show details
{
    "cpe": "cpe:2.3:a:bludit:bludit:3.13.1:*:*:*:*:*:*:*",
    "extracted_events": [
        {
            "introduced": "3.13.1"
        },
        {
            "last_affected": "3.13.1"
        }
    ],
    "source": "CPE_STRING"
}

Affected versions

3.*
3.13.1

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-1590.json"