A vulnerability was found in Graphite Web and classified as problematic. This issue affects some unknown processing of the component Template Name Handler. The manipulation leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The name of the patch is 2f178f490e10efc03cd1d27c72f64ecab224eb23. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-216743.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3309-1 | graphite-web security update |
EUVD |
EUVD-2022-7715 | A vulnerability was found in Graphite Web and classified as problematic. This issue affects some unknown processing of the component Template Name Handler. The manipulation leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The name of the patch is 2f178f490e10efc03cd1d27c72f64ecab224eb23. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-216743. |
Github GHSA |
GHSA-q99p-78hp-xg5c | Graphite Web Cross-site Scripting vulnerability |
Ubuntu USN |
USN-6243-1 | Graphite-Web vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 10 Apr 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-04-10T20:13:07.449Z
Reserved: 2022-12-24T00:00:00.000Z
Link: CVE-2022-4729
Updated: 2024-08-03T01:48:39.588Z
Status : Modified
Published: 2022-12-27T15:15:12.457
Modified: 2024-11-21T07:35:49.577
Link: CVE-2022-4729
OpenCVE Enrichment
No data.
Debian DLA
EUVD
Github GHSA
Ubuntu USN