Vulnerability CVE-2022-41139


Published: 2022-10-17

Description:
MITRE CALDERA 4.1.0 allows stored XSS via app.contact.gist (aka the gist contact configuration field), leading to execution of arbitrary commands on agents.

 References:
https://github.com/metaredteam/external-disclosures/security/advisories/GHSA-7344-4pg9-qf45

Copyright 2026, cxsecurity.com

 

Back to Top