CVE-2022-46889
Description
A persistent cross-site scripting (XSS) vulnerability in NexusPHP before 1.7.33 allows remote authenticated attackers to permanently inject arbitrary web script or HTML via the title parameter used in /subtitles.php.
References
Third Party Advisory
Release NotesThird Party Advisory
CvssV3 impact
Could not find any metrics
CvssV2 impact
Could not find any metrics