VDB

GCVE-110-MAGEIA-2024-74

GCVE-110-MAGEIA-2024-74
Advisory Published
Vulnetix · Advisory published March 20, 2024
A cross-site scripting (XSS) vulnerability in CherryTree v0.99.30 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Name text field when creating a node. (CVE-2022-35133)

Affected Products

VendorProductVersionsPlatforms
Mageiacherrytree0 (affected), 1.0.4-1.mga9 (unaffected), 0 (affected), 1.0.4-1.mga9 (unaffected)
Mageiawaydroid0 (affected), 1.4.2-3.mga9 (unaffected)
Mageiapython-gbinder0 (affected), 1.1.2-2.mga9 (unaffected)
Mageialibgbinder0 (affected), 1.1.34-1.mga9 (unaffected)

Browse GCVE Records

74,265 records in the GCVE database · Updated July 22, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›