CVE-2023-0308: Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq
Published Jan 15, 2023
·Updated
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.10.
Affected Software
1 affected component
PhpMyFaq phpmyfaq<3.1.10
Remediation
Event History
Jan 15, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2023-0308?
CVE-2023-0308 is a vulnerability that allows for stored cross-site scripting (XSS) attacks in the GitHub repository thorsten/phpmyfaq prior to version 3.1.10.
2
How severe is CVE-2023-0308?
CVE-2023-0308 has a severity rating of high with a score of 5.4.
3
What is affected by CVE-2023-0308?
The vulnerability affects the Phpmyfaq software prior to version 3.1.10.
4
How can I fix CVE-2023-0308?
To fix CVE-2023-0308, you need to update the Phpmyfaq software to version 3.1.10 or higher.
5
Where can I find more information about CVE-2023-0308?
You can find more information about CVE-2023-0308 in the following references: [link1](https://github.com/thorsten/phpmyfaq/commit/810ee26d25c3d97664532861863099952f0e9a1f), [link2](https://huntr.dev/bounties/83cfed62-af8b-4aaa-94f2-5a33dc0c2d69).