Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-6795 | Cloudreve versions v1.0.0 through v3.5.3 are vulnerable to Stored Cross-Site Scripting (XSS), via the file upload functionality. A low privileged user will be able to share a file with an admin user, which could lead to privilege escalation. |
Github GHSA |
GHSA-fg25-gq9g-32mx | Cross site scripting in Cloudreve |
| Link | Providers |
|---|---|
| https://www.mend.io/vulnerability-database/CVE-2022-32167 |
|
Thu, 29 May 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Mend
Published:
Updated: 2025-05-29T13:50:36.589Z
Reserved: 2022-05-31T00:00:00.000Z
Link: CVE-2022-32167
Updated: 2024-08-03T07:32:55.955Z
Status : Modified
Published: 2022-09-20T15:15:10.557
Modified: 2024-11-21T07:05:52.063
Link: CVE-2022-32167
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA