Skip to main content
Announcements
NEW: Seamless Public Data Sharing with Qlik's New Anonymous Access Capability: TELL ME MORE!
cancel
Showing results for 
Search instead for 
Did you mean: 
josephfallon
Contributor
Contributor

CVE-2022-42248 - QlikView versions affected ?

CVE-2022-42248 raised against Qlikview versions "<= 12.60.2" was discovered to contain a stored cross-site scripting (XSS) vulnerability in the QvsViewClient functionality.

Details below

https://www.tenable.com/cve/CVE-2022-42248

Does anyone know what lower versions of QlikView are also affected please ?

Labels (1)
1 Solution

Accepted Solutions
Chip_Matejowsky
Support
Support

Hi @josephfallon,

This vulnerability was investigated by Qlik R&D under defect ID QV-23876. It was first identified in version April 2021 (12.60.20000) and fixed in version May 2022 SR2 (12.70.20200).

Suggest that you run only May 2022 SR2 and later versions if you are concerned about this defect.

Best Regards

Principal Technical Support Engineer with Qlik Support
Help users find answers! Don't forget to mark a solution that worked for you!

View solution in original post

1 Reply
Chip_Matejowsky
Support
Support

Hi @josephfallon,

This vulnerability was investigated by Qlik R&D under defect ID QV-23876. It was first identified in version April 2021 (12.60.20000) and fixed in version May 2022 SR2 (12.70.20200).

Suggest that you run only May 2022 SR2 and later versions if you are concerned about this defect.

Best Regards

Principal Technical Support Engineer with Qlik Support
Help users find answers! Don't forget to mark a solution that worked for you!