CVE-2023-5060: Cross-site Scripting (XSS) - DOM in librenms/librenms
Published Sep 19, 2023
·Updated
Cross-site Scripting (XSS) - DOM in GitHub repository librenms/librenms prior to 23.9.1.
Affected Software
2 affected componentsFixes available
composer/librenms/librenms<23.9.1
23.9.1
librenms librenms<23.9.1
Remediation
Event History
Sep 19, 2023
CVE Published
via MITRE·02:03 AM
Data Sourced
via MITRE·02:03 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Advisory Published
03:30 AM
Frequently Asked Questions
1
What is CVE-2023-5060?
CVE-2023-5060 is a Cross-site Scripting (XSS) vulnerability in the GitHub repository librenms/librenms prior to version 23.9.1.
2
What is the severity of CVE-2023-5060?
CVE-2023-5060 has a severity rating of 8.4 (high).
3
How does CVE-2023-5060 affect the software?
CVE-2023-5060 affects the Librenms software prior to version 23.9.1, as well as the composer/librenms/librenms package with versions up to 23.9.1.
4
How can I fix CVE-2023-5060?
To fix CVE-2023-5060, users should update to version 23.9.1 of Librenms or composer/librenms/librenms.
5
Where can I find more information about CVE-2023-5060?
More information about CVE-2023-5060 can be found in the references provided.