CVE-2022-50680

Source
https://cve.org/CVERecord?id=CVE-2022-50680
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-50680.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2022-50680
Published
2025-12-18T20:15:49.980Z
Modified
2026-03-11T12:41:56.843792Z
Severity
  • 4.8 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N CVSS Calculator
Summary
[none]
Details

A stored cross-site scripting vulnerability in Kentico Xperience allows administration users to inject malicious scripts via email marketing templates. Attackers can exploit this vulnerability to execute malicious scripts that could compromise user browsers and steal sensitive information.

References

Affected packages

Git /

Affected ranges

Database specific

unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "13.0.92"
            }
        ]
    }
]
source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-50680.json"