Loading HuntDB...

GHSA-pvp5-prvr-295p

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

On BIG-IP (AFM, ASM) 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, 12.1.0-12.1.4, and 11.5.1-11.6.4, a stored cross-site scripting vulnerability in AFM feed list. In the worst case, an attacker can store a CSRF which results in code execution as the admin user. The level of user role which can perform this attack are resource administrator and administrator.

Related CVEs

Key Information

GHSA ID
GHSA-pvp5-prvr-295p
Published
May 24, 2022 4:49 PM
Last Modified
April 4, 2024 1:10 AM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 17, 2025 6:25 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.