CVE-2023-45796: XSS vulnerability in Pilz PASvisu and PMI v8xx

Published Jun 22, 2026
·
Updated

A stored cross-site scripting vulnerability in the Runtime component of Pilz PASvisu before 1.14.1 and PMI v8xx up to and including 2.0.33992 allows a low-privileged remote unauthenticated attacker to manipulate process data with potential impact on integrity and/or availability.

Affected Software

2 affected components
Pilz PASvisu Runtime<1.14.1
Pilz PMI v8xx<=2.0.33992

Event History

Jun 22, 2026
CVE Published
via MITRE·09:04 AM
Data Sourced
via MITRE·09:04 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:16 AM
DescriptionSeverityWeakness

Frequently Asked Questions

1

What is the severity of CVE-2023-45796?

The severity of CVE-2023-45796 is categorized as high with a CVSS score of 8.1.

2

How do I fix CVE-2023-45796?

To fix CVE-2023-45796, upgrade Pilz PASvisu to version 1.14.1 or PMI v8xx to a version newer than 2.0.33992.

3

What type of vulnerability is CVE-2023-45796?

CVE-2023-45796 is a stored cross-site scripting (XSS) vulnerability affecting specific versions of Pilz PASvisu and PMI.

4

Who is affected by CVE-2023-45796?

Pilz PASvisu users prior to version 1.14.1 and PMI v8xx users up to and including version 2.0.33992 are affected by CVE-2023-45796.

5

What impact does CVE-2023-45796 have?

CVE-2023-45796 allows a low-privileged remote unauthenticated attacker to manipulate process data, potentially impacting integrity and availability.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203