Cross-Site Scripting Vulnerability in Cerebrate Bookmarks Component
CVE-2022-25321
6.1MEDIUM
What is CVE-2022-25321?
Cerebrate versions up to 1.4 are susceptible to a Cross-Site Scripting (XSS) vulnerability in the bookmarks component. This flaw potentially allows remote attackers to inject arbitrary web scripts into the application, which may lead to the unauthorized disclosure of sensitive user information, session hijacking, or redirection to malicious sites. Proper validation and sanitization of user input are crucial to mitigate this vulnerability.
