First published: Sat Apr 22 2023(Updated: )
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.12.
Credit: security@huntr.dev security@huntr.dev security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Phpmyfaq Phpmyfaq | <3.1.12 | |
composer/thorsten/phpmyfaq | <3.1.12 | 3.1.12 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-1875 is medium.
CVE-2023-1875 affects phpMyFAQ versions prior to 3.1.12.
The CWE of CVE-2023-1875 is CWE-79.
To fix the XSS vulnerability in phpMyFAQ, update to version 3.1.12 or later.
You can find more information about CVE-2023-1875 at the following references: [GitHub Commit](https://github.com/thorsten/phpmyfaq/commit/dcf7dd43a3412aa951d7087b86a8b917fae2133a), [Huntr Bounty](https://huntr.dev/bounties/39715aaf-e798-4c60-97c4-45f4f2cd5c61).