CVE-2023-2550: Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq
Published May 5, 2023
·Updated
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to version 3.1.13.
Other sources
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.13.
Affected Software
2 affected componentsFixes available
composer/thorsten/phpmyfaq<3.1.13
3.1.13
PhpMyFaq phpmyfaq<3.1.13
Remediation
Event History
May 5, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
08:15 PM
DescriptionWeakness
Advisory Published
09:31 PM
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID is CVE-2023-2550.
2
What is the title of this vulnerability?
The title of this vulnerability is Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.13.
3
What is the severity level of CVE-2023-2550?
The severity level of CVE-2023-2550 is high with a severity value of 8.2.
4
Which software is affected by this vulnerability?
The vulnerability affects the thorsten/phpmyfaq package prior to version 3.1.13.
5
How can I fix this vulnerability?
To fix this vulnerability, update the thorsten/phpmyfaq package to version 3.1.13 or higher.