CVE-2023-48088: XSS
Published Nov 15, 2023
·Updated
xxl-job-admin 2.4.0 is vulnerable to Cross Site Scripting (XSS) via /xxl-job-admin/joblog/logDetailPage.
Affected Software
2 affected components
maven/com.xuxueli:xxl-job-admin<=2.4.0
Xuxueli xxl-job=2.4.0
Event History
Nov 15, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Advisory Published
03:30 PM
Frequently Asked Questions
1
What is CVE-2023-48088?
CVE-2023-48088 refers to a vulnerability in xxl-job-admin 2.4.0 that allows for Cross-Site Scripting (XSS) attacks.
2
How severe is CVE-2023-48088?
CVE-2023-48088 has a severity rating of medium with a value of 5.4 out of 10.
3
What software is affected by CVE-2023-48088?
xxl-job-admin 2.4.0 is affected by CVE-2023-48088.
4
How can CVE-2023-48088 be exploited?
CVE-2023-48088 can be exploited via the /xxl-job-admin/joblog/logDetailPage.
5
Where can I find more information about CVE-2023-48088?
You can find more information about CVE-2023-48088 on the following references: [GitHub](https://github.com/xuxueli/xxl-job/issues/3329), [NVD](https://nvd.nist.gov/vuln/detail/CVE-2023-48088), [GitHub Advisories](https://github.com/advisories/GHSA-6733-7rp7-vf3m).