Vulnerability Database
Blog
FAQ
Docs
CVE-2022-35144
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2022-35144
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-35144.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-35144
Aliases
GHSA-vc68-6x72-w22f
Published
2022-08-04T20:15:19Z
Modified
2025-01-08T09:05:55.425969Z
Severity
4.8 (Medium)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
CVSS Calculator
Summary
[none]
Details
Renato v0.17.0 was discovered to contain a cross-site scripting (XSS) vulnerability.
References
https://gainsec.com/2022/08/04/cve-2022-35142-cve-2022-35143-cve-2022-35144/
http://raneto.com/
https://cwe.mitre.org/data/definitions/79.html
https://github.com/gilbitron/Raneto/releases
Affected packages
Git
/
github.com/gilbitron/raneto
Affected ranges
Type
GIT
Repo
https://github.com/gilbitron/raneto
Events
Introduced
0
Unknown introduced commit / All previous commits are affected
Fixed
5ae78ba2c00773226cde7190e008445266e90418
Affected versions
0.*
0.1.0
0.1.1
0.1.2
0.11.0
0.13.0
0.14.0
0.15.0
0.16.0
0.16.2
0.16.4
0.16.5
0.16.6
0.17.0
0.2.0
0.3.0
0.4.0
0.5.0
0.6.0
0.7.0
0.7.1
0.8.0
0.9.0
CVE-2022-35144 - OSV