VDB
GCVE-110-MAGEIA-2024-74
GCVE-110-MAGEIA-2024-74
Advisory Published
A cross-site scripting (XSS) vulnerability in CherryTree v0.99.30 allows
attackers to execute arbitrary web scripts or HTML via a crafted payload
injected into the Name text field when creating a node. (CVE-2022-35133)
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Mageia | cherrytree | 0 (affected), 1.0.4-1.mga9 (unaffected), 0 (affected), 1.0.4-1.mga9 (unaffected) | — |
| Mageia | waydroid | 0 (affected), 1.4.2-3.mga9 (unaffected) | — |
| Mageia | python-gbinder | 0 (affected), 1.1.2-2.mga9 (unaffected) | — |
| Mageia | libgbinder | 0 (affected), 1.1.34-1.mga9 (unaffected) | — |
Aliases
Browse GCVE Records
74,265 records in the GCVE database · Updated July 22, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.