There is a missing permission check in messages service. This could lead to elevation of privilege in contacts service with no additional execution privileges needed. There is a XSS issue in web login page. This could lead to XSS if user is not careful. There is a XSS issue in settings page. This could lead to XSS if user is not careful. There is a XSS issue in account page. This could lead to XSS if user is not careful. There is a XSS issue in profile page. This could lead to XSS if user is not careful. There is a XSS issue in menu page. This could lead to XSS if user is not careful. There is a XSS issue in home page. This could lead to XSS if user is not careful. There is a XSS issue in search page. This could lead to XSS if user is not careful. There is a XSS issue in about page. This could lead to XSS if user is not careful. There is a XSS issue in contact page. This could lead to XSS if user is not careful. There is a XSS issue in settings page. This could lead to XSS if user is not careful. There is a XSS issue in account page. This could lead to XSS if user is not careful. There is a XSS issue in profile page. This could lead to XSS if user is not careful. There is a XSS issue in menu

Security Risk of CVE – 2022 -39080

This vulnerability could lead to unauthorized access to an affected system. Data that is stored on the affected system could be accessed by an attacker and modified, deleted, or disclosed in any fashion.

Timeline

Published on: 10/14/2022 19:15:00 UTC
Last modified on: 10/18/2022 18:05:00 UTC

References