CVE-2023-2752: Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq
Published May 17, 2023
·Updated
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.2.0-beta.
Affected Software
3 affected componentsFixes available
composer/thorsten/phpmyfaq<3.2.0-beta
3.2.0-beta
PhpMyFaq phpmyfaq<3.2.0
PhpMyFaq phpmyfaq=3.2.0-alpha
Remediation
Event History
May 17, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Advisory Published
09:30 AM
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-2752.
2
What type of vulnerability is CVE-2023-2752?
CVE-2023-2752 is a Cross-site Scripting (XSS) vulnerability.
3
What is the severity rating of CVE-2023-2752?
CVE-2023-2752 has a severity rating of 5.4 (high).
4
Which software versions are affected by CVE-2023-2752?
Versions of phpMyFAQ prior to 3.2.0-beta are affected by CVE-2023-2752.
5
How can I fix CVE-2023-2752?
To fix CVE-2023-2752, update phpMyFAQ to version 3.2.0-beta or later.