release
alert
Auto-detect
Apple App Store
Rust Crate (Cargo)
Chocolatey Package
Docker Image
Debian Package (Bookworm)
Go Module
Ruby GEM
GitHub Repository
GitLab Repository
Maven Central
NPM Package
NuGet Package
Packagist Package
Python Package (PyPI)
VS Code Extension
WordPress Plugin
Search
/
Sign in
CVE-2022-35910
Published
August 19th, 2022
Friday, 19 August 2022, 13:15
View on NVD ↗
CVSS v3
5.4
MEDIUM
CVSS v2
N/A
Affected
1
PROJECT
Description
In Jellyfin before 10.8, stored XSS allows theft of an admin access token.
Affected Projects
1
Configurations
1
References
3
jellyfin/jellyfin
The Free Software Media System - Server Backend & API
GitHub
53.7K