CVE-2023-4829: Cross-site Scripting (XSS) - Stored in froxlor/froxlor
Published Oct 13, 2023
·Updated
Cross-site Scripting (XSS) - Stored in GitHub repository froxlor/froxlor prior to 2.0.22.
Affected Software
2 affected componentsFixes available
composer/froxlor/froxlor<2.0.22
2.0.22
Froxlor Froxlor<2.0.22
Remediation
Event History
Oct 13, 2023
CVE Published
via MITRE·12:24 PM
Data Sourced
via MITRE·12:24 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Advisory Published
03:30 PM
Frequently Asked Questions
1
What is the severity of CVE-2023-4829?
The severity of CVE-2023-4829 is medium with a CVSS score of 4.3.
2
How does CVE-2023-4829 affect froxlor/froxlor?
CVE-2023-4829 affects froxlor/froxlor versions prior to 2.0.22.
3
What is the remedy for CVE-2023-4829?
The remedy for CVE-2023-4829 is to update froxlor/froxlor to version 2.0.22 or newer.
4
What is the Common Weakness Enumeration (CWE) number for CVE-2023-4829?
The Common Weakness Enumeration (CWE) number for CVE-2023-4829 is CWE-79.
5
Where can I find more information about CVE-2023-4829?
You can find more information about CVE-2023-4829 at the following references: [NVD](https://nvd.nist.gov/vuln/detail/CVE-2023-4829), [GitHub commit](https://github.com/froxlor/froxlor/commit/4711a414360782fe4fc94f7c25027077cbcdf73d), [Huntr bounty](https://huntr.dev/bounties/babd73ca-6c80-4145-8c7d-33a883fe606b).