CVE-2022-4735: Dash-Live Project Dash-Live
Medium severity, CVSS 6.1. EPSS: 0.5% chance of exploitation in the next 30 days.
A vulnerability classified as problematic was found in asrashley dash-live. This vulnerability affects the function ready of the file static/js/media.js of the component DOM Node Handler. The manipulation leads to cross site scripting. The attack can be initiated remotely. The name of the patch is 24d01757a5319cc14c4aa1d8b53d1ab24d48e451. It is recommended to apply a patch to fix this issue. VDB-216766 is the identifier assigned to this vulnerability.
Affected products
- Dash-Live Project Dash-Live: before 2022-03-01 (fixed in 2022-03-01)
Published 2022-12-25. Last modified 2026-06-17.