Vulnerabilities > Onlyoffice > Workspace

DATE CVE VULNERABILITY TITLE RISK
2023-02-07 CVE-2022-47412 Cross-site Scripting vulnerability in Onlyoffice Workspace
Given a malicious document provided by an attacker, the ONLYOFFICE Workspace DMS is vulnerable to a stored (persistent, or "Type II") cross-site scripting (XSS) condition.
network
low complexity
onlyoffice CWE-79
5.4