Loading
pfSense CE through 2.6.0 and pfSense Plus before 22.05 allow XSS in the WebGUI via URL Table Alias URL parameters.
Use CWE-79, Netgate vendor hub and Pfsense product page to widen CVE-2022-29273 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2020-21487, CVE-2023-48123 and CVE-2023-42326 for nearby disclosures in the same product family.