| Release | Version |
|---|---|
| bullseye | 1.18-1 |
| sid | 1.30.2+dfsg-1 |
| Bug | bullseye | sid | Description |
|---|---|---|---|
| CVE-2022-2589 | vulnerable (no DSA) | fixed | Cross-site Scripting (XSS) - Reflected in GitHub repository beancount/ ... |
| CVE-2022-2523 | vulnerable (no DSA) | fixed | Cross-site Scripting (XSS) - Reflected in GitHub repository beancount/ ... |
| CVE-2022-2514 | vulnerable (no DSA) | fixed | The time and filter parameters in Fava prior to v1.22 are vulnerable t ... |