First published: Mon Mar 13 2023(Updated: )
Code Injection in GitHub repository alextselegidis/easyappointments prior to 1.5.0.
Credit: security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Easy!Appointments | <1.5.0 |
https://github.com/alextselegidis/easyappointments/commit/453c6e130229718680c91bef450db643a0f263e4
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-1367 is medium with a severity value of 3.8.
CVE-2023-1367 is a code injection vulnerability in the GitHub repository alextselegidis/easyappointments prior to version 1.5.0.
The Easyappointments Easyappointments software versions up to but excluding 1.5.0 are affected by CVE-2023-1367.
To fix CVE-2023-1367, update to version 1.5.0 or later of the Easyappointments Easyappointments software.
More information about CVE-2023-1367 can be found in the GitHub repository alextselegidis/easyappointments commit and on the huntr.dev website.