First published: Wed Apr 05 2023(Updated: )
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.12.
Credit: security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Phpmyfaq Phpmyfaq | <3.1.12 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-1878 is high with a CVSS score of 5.4.
To fix the Cross-site Scripting (XSS) vulnerability (CVE-2023-1878), upgrade the phpMyFAQ software to version 3.1.12 or newer.
The Cross-site Scripting (XSS) vulnerability (CVE-2023-1878) affects phpMyFAQ versions prior to 3.1.12.
The CWE ID of CVE-2023-1878 is CWE-79.
You can find more information about CVE-2023-1878 in the vulnerability report on GitHub (https://github.com/thorsten/phpmyfaq/commit/e018823f8e3bca103c11e5a98b0dd469e41ed417) and on the huntr.dev website (https://huntr.dev/bounties/93f981a3-231d-460d-a239-bb960e8c2fdc).