CVE-2023-2427: Cross-site Scripting (XSS) - Reflected in thorsten/phpmyfaq
Published May 5, 2023
·Updated
Cross-site Scripting (XSS) - Reflected in GitHub repository thorsten/phpmyfaq prior to 3.1.13.
Other sources
Cross-site Scripting (XSS) - Reflected in GitHub repository thorsten/phpmyfaq prior to version 3.1.13.
Affected Software
2 affected componentsFixes available
composer/thorsten/phpmyfaq<3.1.13
3.1.13
PhpMyFaq phpmyfaq<3.1.13
Remediation
Event History
May 5, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
07:15 PM
DescriptionWeakness
Advisory Published
09:31 PM
Frequently Asked Questions
1
What is the severity of CVE-2023-2427?
The severity of CVE-2023-2427 is medium.
2
How does CVE-2023-2427 affect the Thorsten/Phpmyfaq GitHub repository?
CVE-2023-2427 affects the Thorsten/Phpmyfaq GitHub repository prior to version 3.1.13.
3
How can I fix CVE-2023-2427 in the Thorsten/Phpmyfaq GitHub repository?
To fix CVE-2023-2427 in the Thorsten/Phpmyfaq GitHub repository, you need to update to version 3.1.13 or later.
4
How does CVE-2023-2427 affect Phpmyfaq?
CVE-2023-2427 affects Phpmyfaq versions up to but not including 3.1.13.
5
What is the Common Weakness Enumeration (CWE) ID for CVE-2023-2427?
The Common Weakness Enumeration (CWE) ID for CVE-2023-2427 is CWE-79.