Description
Craft is a CMS for creating custom digital experiences on the web. A malformed RSS feed can deliver an XSS payload. This issue was patched in version 4.4.6.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-1613 | Craft is a CMS for creating custom digital experiences on the web. A malformed RSS feed can deliver an XSS payload. This issue was patched in version 4.4.6. |
Github GHSA |
GHSA-qpgm-gjgf-8c2x | Craft CMS XSS in RSS widget feed |
References
History
Tue, 14 Jan 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-01-14T18:21:23.065Z
Reserved: 2023-05-17T22:25:50.699Z
Link: CVE-2023-33195
Updated: 2024-08-02T15:39:35.713Z
Status : Modified
Published: 2023-05-27T04:15:25.767
Modified: 2024-11-21T08:05:05.987
Link: CVE-2023-33195
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA