libkiwix 10.0.0 and 10.0.1 allows XSS in the built-in webserver functionality via the search suggestions URL parameter. This is fixed in 10.1.0.
{ "binaries": [ { "binary_version": "0.2.0-1", "binary_name": "libkiwix-dev" }, { "binary_version": "0.2.0-1", "binary_name": "libkiwix0" } ] }
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2022/UBUNTU-CVE-2022-27920.json"
{ "binaries": [ { "binary_version": "3.1.1-1build4", "binary_name": "libkiwix-dev" }, { "binary_version": "3.1.1-1build4", "binary_name": "libkiwix3" } ] }
{ "binaries": [ { "binary_version": "10.0.0+dfsg-2build1", "binary_name": "libkiwix-dev" }, { "binary_version": "10.0.0+dfsg-2build1", "binary_name": "libkiwix10" } ] }
{ "binaries": [ { "binary_version": "12.1.1-1.1build2", "binary_name": "libkiwix-dev" }, { "binary_version": "12.1.1-1.1build2", "binary_name": "libkiwix12t64" } ] }
{ "binaries": [ { "binary_version": "14.0.0-1.1", "binary_name": "libkiwix-dev" }, { "binary_version": "14.0.0-1.1", "binary_name": "libkiwix14" } ] }