{"id":"CVE-2021-4269","details":"A vulnerability has been found in SimpleRisk and classified as problematic. This vulnerability affects the function checkAndSetValidation of the file simplerisk/js/common.js. The manipulation of the argument title leads to cross site scripting. The attack can be initiated remotely. Upgrading to version 20220306-001 is able to address this issue. The name of the patch is 591405b4ed160fbefc1dca1e55c5745079a7bb48. It is recommended to upgrade the affected component. The identifier of this vulnerability is VDB-216472.","modified":"2026-07-09T01:07:54.990809Z","published":"2022-12-21T19:15:13.547Z","references":[{"type":"ADVISORY","url":"https://github.com/simplerisk/code/releases/tag/20220306-001"},{"type":"ADVISORY","url":"https://vuldb.com/?id.216472"},{"type":"FIX","url":"https://github.com/simplerisk/code/commit/591405b4ed160fbefc1dca1e55c5745079a7bb48"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/simplerisk/code","events":[{"introduced":"0"},{"fixed":"cb91630032e0c231551983b0f1c30999c0272748"},{"fixed":"591405b4ed160fbefc1dca1e55c5745079a7bb48"}],"database_specific":{"cpe":"cpe:2.3:a:simplerisk:simplerisk:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"fixed":"20220306-001"}],"source":["CPE_RANGE","REFERENCES"]}}],"versions":["20220122-001","20211230-001","20211115-001","20211027-001","20211010-001","20210930-001","20210802-001","20210713-001","20210630-001","20210625-001","20210305-001","20210121-001","20201123-001","20201005-001","20200711-001","20200401-001","20200328-001","20190930-001","20190630-001","20190331-001","20190210-001","20190105-001","20181103-001","20180916-001","20180830-001","20180814-001","20180812-001","20180627-001","20180527-001","20180301-001","20180104-001","20170724-001","20170723-001","20170614-001","20170416-001","20170312-001","20170108-001","20170102-001","20161122-001","20161030-001","20161023-001","20160612-001","20160331-001","20160124-001","20151219-001","20151108-001","20150930-001","20150928-001","20150920-001","20150729-001","20150531-001","20150321-001","20150202-001","20141214-001","20141129-001"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-4269.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N"}]}