Description Cross-site Scripting (XSS) - Stored in GitHub repository yetiforcecompany/yetiforcecrm prior to 6.4.0. Remediation References CVE-2022-2885 Related Vulnerabilities WordPress Plugin Ultimate Member-User Profile, Registration, Login, Member Directory, Content Restriction & Membership Cross-Site Scripting (2.4.0) Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-4592) WordPress Plugin 404 to 301-Redirect, Log and Notify 404 Errors SQL Injection (2.0.2) WordPress Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2008-5278) TYPO3 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-6145) Severity Medium Classification CVE-2022-2885 CWE-707 CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N Tags Missing Update Known Vulnerabilities