Vulnerabilities > Cherrytree Project
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-08-17 | CVE-2022-35133 | Cross-site Scripting vulnerability in Cherrytree Project Cherrytree 0.99.30 A cross-site scripting (XSS) vulnerability in CherryTree v0.99.30 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Name text field when creating a node. | 6.1 |