CVE-2023-47259: XSS
Published Nov 5, 2023
·Updated
Redmine before 4.2.11 and 5.0.x before 5.0.6 allows XSS in the Textile formatter.
Affected Software
2 affected components
Redmine Redmine<4.2.11
Redmine Redmine>=5.0.0<5.0.6
Event History
Nov 5, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-47259?
CVE-2023-47259 is a vulnerability in Redmine before version 4.2.11 and 5.0.x before 5.0.6 that allows XSS in the Textile formatter.
2
What is the severity of CVE-2023-47259?
The severity of CVE-2023-47259 is medium with a CVSS score of 6.1.
3
How does CVE-2023-47259 affect Redmine?
CVE-2023-47259 affects Redmine versions before 4.2.11 and 5.0.x before 5.0.6, allowing XSS in the Textile formatter.
4
How can I fix CVE-2023-47259?
To fix CVE-2023-47259, you should update Redmine to version 4.2.11 or 5.0.6.
5
Where can I find more information about CVE-2023-47259?
You can find more information about CVE-2023-47259 on the official Redmine website: https://www.redmine.org/projects/redmine/wiki/Security_Advisories