Description
CraftCMS 3.7.59 is vulnerable Cross Site Scripting (XSS). An attacker can inject javascript code into Volume Name.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-1415 | CraftCMS 3.7.59 is vulnerable Cross Site Scripting (XSS). An attacker can inject javascript code into Volume Name. |
Github GHSA |
GHSA-wv7j-rc2q-9j67 | Cross Site Scripting in CraftCMS |
References
History
Mon, 03 Feb 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-02-03T17:25:43.950Z
Reserved: 2023-04-07T00:00:00.000Z
Link: CVE-2023-30177
Updated: 2024-08-02T14:21:44.578Z
Status : Modified
Published: 2023-04-25T18:15:09.627
Modified: 2025-02-03T18:15:31.450
Link: CVE-2023-30177
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA