Exploitation Summary
EIP tracks 1 public exploit for CVE-2022-2650. PoCs published by HackinKraken.
AI-analyzed exploit summary This repository contains a technical writeup discussing two CVEs (CVE-2022-2650 and CVE-2026-39338) discovered by the author. CVE-2022-2650 involves an improper restriction of excessive authentication attempts in wger-project/wger prior to 2.2, while CVE-2026-39338 is a Blind XSS vulnerability in ChurchCRM Global Search.
Description
Improper Restriction of Excessive Authentication Attempts in GitHub repository wger-project/wger prior to 2.2.
Exploits (1)
This repository contains a technical writeup discussing two CVEs (CVE-2022-2650 and CVE-2026-39338) discovered by the author. CVE-2022-2650 involves an improper restriction of excessive authentication attempts in wger-project/wger prior to 2.2, while CVE-2026-39338 is a Blind XSS vulnerability in ChurchCRM Global Search.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H