Vulnerability CVE-2023-4422


Published: 2023-08-18

Description:
Cross-site Scripting (XSS) - Stored in GitHub repository cockpit-hq/cockpit prior to 2.6.3.

Type:

CWE-79

(Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'))

 References:
https://github.com/cockpit-hq/cockpit/commit/b8dad5e070608bb5e4ec58fabbee101b5af737cf
https://huntr.dev/bounties/2e12b773-b6a2-48da-a4bb-55d5d1307d2e

Copyright 2026, cxsecurity.com

 

Back to Top