CVE-2022-30604: Cybozu Office

Medium severity, CVSS 6.1. EPSS: 0.6% chance of exploitation in the next 30 days.

Cross-site scripting vulnerability in the specific parameters of Cybozu Office 10.0.0 to 10.8.5 allows a remote attacker to inject an arbitrary script via unspecified vectors.

Affected products

  • Cybozu Office: from 10.0.0, up to and including 10.8.5

Published 2022-08-18. Last modified 2026-06-17.