First published: Thu Dec 14 2023(Updated: )
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Seraphinite Solutions Seraphinite Accelerator allows Reflected XSS.This issue affects Seraphinite Accelerator: from n/a through 2.20.28.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Seraphinite Solutions Seraphinite Accelerator | <2.20.29 |
Update to 2.20.29 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-49740 is classified as a reflected cross-site scripting (XSS) vulnerability.
To fix CVE-2023-49740, upgrade Seraphinite Accelerator to version 2.20.29 or later.
CVE-2023-49740 affects Seraphinite Accelerator versions from n/a through 2.20.28.
CVE-2023-49740 is categorized as an Improper Neutralization of Input During Web Page Generation, leading to Cross-site Scripting (XSS).
CVE-2023-49740 can allow an attacker to execute arbitrary JavaScript in the context of the user's session.