AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-26494

MEDIUM · CVSS 4.8 EPSS 0.64%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-03-21 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2022-26494
Severity
MEDIUM
CVSS
4.8
EPSS
0.64%
Java

Original NVD Description

An XSS was identified in the Admin Web interface of PrimeKey SignServer before 5.8.1. JavaScript code must be used in a worker name before a Generate CSR request. Only an administrator can update a worker name.