AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-31358

CRITICAL · CVSS 9 EPSS 1.27%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-12-14 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.0. It may be remotely exploitable.

CVE
CVE-2022-31358
Severity
CRITICAL
CVSS
9
EPSS
1.27%

Original NVD Description

A reflected cross-site scripting (XSS) vulnerability in Proxmox Virtual Environment prior to v7.2-3 allows remote attackers to execute arbitrary web scripts or HTML via non-existent endpoints under path /api2/html/.

Related CVEs

Other vulnerabilities affecting the same vendor(s)