← Back to browse · API

CVE-2022-25772

Severity
CRITICAL
CVSS
9.6
EPSS
0.61396
Risk score
59.89
CISA KEV
No
PoC
No
Published
2022-06-20
Modified
2024-08-03
First seen
2026-08-08
Aliases
EUVD-2022-4785, GHSA-PJPC-87MP-4332
Products
Mautic:Mautic unspecified <4.3.0
Sources
euvd EUVD-2022-4785

Description

A cross-site scripting (XSS) vulnerability in the web tracking component of Mautic before 4.3.0 allows remote attackers to inject executable javascript

References