Back to Database
Status published
Medium
CVE-2022-0157
Cross-site Scripting (XSS) - Stored in phoronix-test-suite/phoronix-test-suite
Vulnerability Description
phoronix-test-suite is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-0157
Credits & Attribution
No credits recorded in the NVD database.
References
- https://huntr.dev/bounties/2c0fe81b-0977-4e1e-b5d8-7646c9a7ebbd
- https://github.com/phoronix-test-suite/phoronix-test-suite/commit/56fd0a3b69fb33c1c90a6017ed735889aaa59486
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/57V2CSFU5MKWKL6RJUKMXSD4PCRFTMMQ/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BU7E6OOZCXS3ZWHOQ2AR7MKM56IN2R6R/
More from phoronix-test-suite
View All →CVE-2022-0571
Cross-site Scripting (XSS) - Reflected in phoronix-test-suite/phoronix-test-suite
Medium
6.8
CVE-2022-0238
Cross-Site Request Forgery (CSRF) in phoronix-test-suite/phoronix-test-suite
Medium
4.5
CVE-2022-0197
Cross-Site Request Forgery (CSRF) in phoronix-test-suite/phoronix-test-suite
Medium
6.5
CVE-2022-0196
Cross-Site Request Forgery (CSRF) in phoronix-test-suite/phoronix-test-suite
Medium
5.4
Affected Vendor
phoronix-test-suite
View all reports →Affected Software
phoronix-test-suite/phoronix-test-suite
Vulnerable Versions:
unspecified
Timeline
Official Publish:
January 10th, 2022
Last Modified:
August 2nd, 2024
Added to House:
July 21st, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:L/A:N