First published: Mon Feb 13 2023(Updated: )
Cross-site Scripting (XSS) - Stored in GitHub repository btcpayserver/btcpayserver prior to 1.7.11.
Credit: security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
BTCPayServer | <1.7.11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-0810 is a Cross-site Scripting (XSS) vulnerability that was stored in the GitHub repository btcpayserver/btcpayserver prior to version 1.7.11.
CVE-2023-0810 has a severity level of high with a CVSS score of 5.4.
The btcpayserver/btcpayserver repository up to version 1.7.11 is affected by CVE-2023-0810.
To fix CVE-2023-0810, you should update your btcpayserver installation to version 1.7.11 or higher.
You can find more information about CVE-2023-0810 in the GitHub commit and the huntr.dev bounty links: [GitHub Commit](https://github.com/btcpayserver/btcpayserver/commit/dffa6accb04df7b80bc584dedef22c9297292ce6), [huntr.dev Bounty](https://huntr.dev/bounties/a48414ea-63d9-453c-b3f3-2c927b71ec68).