Reflected cross-site scripting in PHP Point of Sale version 19.0, by PHP Point of Sale, LLC.
CVE-2022-40290
6.1MEDIUM
What is CVE-2022-40290?
The application was vulnerable to an unauthenticated Reflected Cross-Site Scripting (XSS) vulnerability in the barcode generation functionality, allowing attackers to generate an unsafe link that could compromise users.
Affected Version(s)
PHP Point of Sale 0
