A vulnerability has been found in Graphite Web and classified as problematic. This vulnerability affects unknown code of the component Cookie Handler. The manipulation leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The name of the patch is 2f178f490e10efc03cd1d27c72f64ecab224eb23. It is recommended to apply a patch to fix this issue. VDB-216742 is the identifier assigned to this vulnerability.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3309-1 | graphite-web security update |
EUVD |
EUVD-2022-7484 | A vulnerability has been found in Graphite Web and classified as problematic. This vulnerability affects unknown code of the component Cookie Handler. The manipulation leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The name of the patch is 2f178f490e10efc03cd1d27c72f64ecab224eb23. It is recommended to apply a patch to fix this issue. VDB-216742 is the identifier assigned to this vulnerability. |
Github GHSA |
GHSA-3c5x-4hvx-qrrr | Graphite Web Cross-site Scripting vulnerability |
Ubuntu USN |
USN-6243-1 | Graphite-Web vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 10 Apr 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-04-10T20:11:56.308Z
Reserved: 2022-12-24T00:00:00.000Z
Link: CVE-2022-4728
Updated: 2024-08-03T01:48:40.379Z
Status : Modified
Published: 2022-12-27T15:15:12.373
Modified: 2024-11-21T07:35:49.447
Link: CVE-2022-4728
OpenCVE Enrichment
No data.
Debian DLA
EUVD
Github GHSA
Ubuntu USN