Description
OpenTeknik LLC OSSN OPEN SOURCE SOCIAL NETWORK v6.3 LTS was discovered to contain a stored cross-site scripting (XSS) vulnerability via the News Feed module.
Exploits (1)
References (5)
Core 5
Core References
Product x_refsource_misc
https://www.opensource-socialnetwork.org/
Release Notes, Vendor Advisory x_refsource_misc
https://github.com/opensource-socialnetwork/opensource-socialnetwork/releases/tag/6.3
Product x_refsource_misc
https://www.openteknik.com/contact?channel=ossn
Exploit, Third Party Advisory x_refsource_misc
https://grimthereaperteam.medium.com/cve-2022-34963-ossn-6-3-lts-stored-xss-vulnerability-at-news-feed-b8ae8f2fa5f3
Exploit, Third Party Advisory x_refsource_misc
https://github.com/bypazs/CVE-2022-34963
Scores
CVSS v3
5.4
EPSS
0.0127
EPSS Percentile
79.6%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Details
CWE
CWE-79
Status
published
Products (1)
openteknik/open_source_social_network
6.3
Published
Jul 25, 2022
Tracked Since
Feb 18, 2026