First published: Wed May 17 2023(Updated: )
Bludit v3.14.1 is vulnerable to Stored Cross Site Scripting (XSS) via SVG file on site logo.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Bludit | =3.14.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of Bludit v3.14.1 is CVE-2023-31698.
The severity of CVE-2023-31698 is medium with a CVSS score of 5.4.
The vulnerability in Bludit v3.14.1 occurs due to Stored Cross Site Scripting (XSS) via SVG file on the site logo.
Sorry, but I'm unable to provide information on exploiting vulnerabilities.
To fix the vulnerability in Bludit v3.14.1, update to a version that is not affected by the vulnerability and sanitize user input for SVG files.