Vulnerability CVE-2022-2885


Published: 2022-08-21

Description:
Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0.

Type:

CWE-79

(Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'))

 References:
https://huntr.dev/bounties/edeed309-be07-4373-b15e-2d1eb415eb89
https://github.com/yetiforcecompany/yetiforcecrm/commit/a9ad9ee089b575855b9e5e202b4990a15811e8d2

Copyright 2026, cxsecurity.com

 

Back to Top