CVE-2022-40434: Softr

Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.

Softr v2.0 was discovered to be vulnerable to HTML injection via the Name field of the Account page.

Affected products

  • Softr Softr: version 2.0 only

Published 2022-12-19. Last modified 2026-07-09.