CVE-2022-23458

Source
https://nvd.nist.gov/vuln/detail/CVE-2022-23458
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-23458.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-23458
Aliases
Published
2022-09-22T22:15:09Z
Modified
2025-01-08T14:02:53.206323Z
Severity
  • 6.1 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N CVSS Calculator
Summary
[none]
Details

Toast UI Grid is a component to display and edit data. Versions prior to 4.21.3 are vulnerable to cross-site scripting attacks when pasting specially crafted content into editable cells. This issue was fixed in version 4.21.3. There are no known workarounds.

References

Affected packages

Git / github.com/nhn/tui.grid

Affected ranges

Type
GIT
Repo
https://github.com/nhn/tui.grid
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Fixed

Affected versions

v4.*

v4.10.0
v4.10.1
v4.11.0
v4.12.0
v4.12.1
v4.13.0
v4.14.0
v4.15.0
v4.15.1
v4.15.2
v4.15.3
v4.16.1
v4.17.0
v4.17.1
v4.17.2
v4.17.3
v4.18.0
v4.18.1
v4.19.0
v4.19.1
v4.19.2
v4.19.3
v4.19.4
v4.20.0
v4.20.1
v4.20.3
v4.21.0
v4.21.1
v4.21.2
v4.7.0
v4.8.0
v4.8.1
v4.9.0
v4.9.1