First published: Wed Sep 27 2023(Updated: )
Sourcecodester Expense Tracker App v1 is vulnerable to Cross Site Scripting (XSS) via add category.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oretnom23 Expense Tracker | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-44048 is a vulnerability found in Sourcecodester Expense Tracker App v1, which allows for Cross-Site Scripting (XSS) attacks through the 'add category' feature.
CVE-2023-44048 allows attackers to inject malicious scripts into the Expense Tracker App, potentially compromising user data and enabling further attacks.
The severity level of CVE-2023-44048 is rated as medium, with a severity value of 5.4.
To fix the CVE-2023-44048 vulnerability, it is recommended to update the Sourcecodester Expense Tracker App to a patched version that addresses this XSS vulnerability.
To protect your data from CVE-2023-44048, ensure that you are using the latest version of the Expense Tracker App and exercise caution when entering data, avoiding any suspicious or untrusted inputs.