CVE-2023-1146: Cross-site Scripting (XSS) - Generic in flatpressblog/flatpress
Published Mar 2, 2023
·Updated
Cross-site Scripting (XSS) - Generic in GitHub repository flatpressblog/flatpress prior to 1.3.
Affected Software
1 affected component
flatpress flatpress<1.3
Remediation
Event History
Mar 2, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-1146?
CVE-2023-1146 is classified as a Cross-site Scripting (XSS) vulnerability with a security impact that could allow attackers to execute malicious scripts in the context of the user’s browser.
2
How do I fix CVE-2023-1146?
To fix CVE-2023-1146, upgrade to Flatpress version 1.3 or later where the vulnerability has been resolved.
3
What versions of Flatpress are affected by CVE-2023-1146?
CVE-2023-1146 affects all versions of Flatpress prior to 1.3.
4
What type of vulnerability is CVE-2023-1146?
CVE-2023-1146 is a generic Cross-site Scripting (XSS) vulnerability.
5
Where can I learn more about CVE-2023-1146?
For more details on CVE-2023-1146, refer to the official GitHub repository for Flatpress.