First published: Mon Jun 05 2023(Updated: )
DokuWiki before 2023-04-04a allows XSS via RSS titles.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
DokuWiki | <2023-04-04a |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-34408 is classified as a medium severity vulnerability.
To fix CVE-2023-34408, upgrade DokuWiki to version 2023-04-04a or later.
CVE-2023-34408 is an XSS (Cross-Site Scripting) vulnerability affecting DokuWiki.
DokuWiki versions prior to 2023-04-04a are affected by CVE-2023-34408.
Yes, CVE-2023-34408 can be exploited remotely through malicious RSS titles.