Vulnerability Database
Blog
FAQ
Docs
PYSEC-2022-200
See a problem?
Import Source
https://github.com/pypa/advisory-database/blob/main/vulns/octoprint/PYSEC-2022-200.yaml
JSON Data
https://api.test.osv.dev/v1/vulns/PYSEC-2022-200
Aliases
CVE-2022-1430
GHSA-x7r7-wmj8-vv5g
Published
2022-05-18T14:15:00Z
Modified
2023-11-01T04:57:21.909252Z
Summary
[none]
Details
Cross-site Scripting (XSS) - DOM in GitHub repository octoprint/octoprint prior to 1.8.0.
References
https://github.com/octoprint/octoprint/commit/8087528e4a7ddd15c7d95ff662deb5ef7de90045
https://huntr.dev/bounties/0cd30d71-1e32-4a0b-b4c3-faaa1907b541
https://github.com/advisories/GHSA-x7r7-wmj8-vv5g
Affected packages
PyPI
/
octoprint
Package
Name
octoprint
View open source insights on deps.dev
Purl
pkg:pypi/octoprint
Affected ranges
Type
GIT
Repo
https://github.com/octoprint/octoprint
Events
Introduced
0
Unknown introduced commit / All previous commits are affected
Fixed
8087528e4a7ddd15c7d95ff662deb5ef7de90045
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1.8.0
Affected versions
1.*
1.3.11
1.3.12rc1
1.3.12rc3
1.3.12
1.4.0rc1
1.4.0rc2
1.4.0rc3
1.4.0rc4
1.4.0rc5
1.4.0rc6
1.4.0
1.4.1rc1
1.4.1rc2
1.4.1rc3
1.4.1rc4
1.4.1
1.4.2
1.5.0rc1
1.5.0rc2
1.5.0rc3
1.5.0
1.5.1
1.5.2
1.5.3
1.6.0rc1
1.6.0rc2
1.6.0rc3
1.6.0
1.6.1
1.7.0rc1
1.7.0rc2
1.7.0rc3
1.7.0
1.7.1
1.7.2
1.7.3
1.8.0rc1
1.8.0rc2
1.8.0rc3
1.8.0rc4
1.8.0rc5
PYSEC-2022-200 - OSV