{"id":"CVE-2020-22607","details":"Cross Site Scripting vulnerabilty in LimeSurvey 4.1.11+200316 via the (1) name and (2) description parameters in application/controllers/admin/PermissiontemplatesController.php.","aliases":["BIT-limesurvey-2020-22607"],"modified":"2026-08-07T15:12:02.736403Z","published":"2021-06-28T19:15:07.837Z","references":[{"type":"FIX","url":"https://github.com/LimeSurvey/LimeSurvey/commit/2aada33c76efbbc35d33c149ac02b1dc16a81f62"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/limesurvey/limesurvey","events":[{"introduced":"754685ffaaf40d8447e070485a7b9e6333c2bbfd"},{"last_affected":"754685ffaaf40d8447e070485a7b9e6333c2bbfd"},{"fixed":"2aada33c76efbbc35d33c149ac02b1dc16a81f62"}],"database_specific":{"source":["CPE_STRING","REFERENCES"],"cpe":"cpe:2.3:a:limesurvey:limesurvey:4.1.11\\+200316:*:*:*:*:*:*:*","extracted_events":[{"introduced":"4.1.11+200316"},{"last_affected":"4.1.11+200316"}]}}],"versions":["4.1.11+200316"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-22607.json"}}],"schema_version":"1.8.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N"}]}