First published: Thu Sep 28 2023(Updated: )
Cross-site Scripting (XSS) - Reflected in GitHub repository microweber/microweber 1.3.4 and prior. A patch is available and anticipated to be part of the 2.x branch.
Credit: security@huntr.dev security@huntr.dev security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Microweber Microweber | <2.0 | |
composer/microweber/microweber | <=1.3.4 | |
<2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-5244 is a vulnerability categorized as Cross-site Scripting (XSS) - Reflected in the GitHub repository microweber/microweber prior to version 2.0.
CVE-2023-5244 has a severity level of medium (score: 5).
If you are using the microweber/microweber package with a version up to and including 1.3.4, your software is affected by CVE-2023-5244.
To fix CVE-2023-5244, update your microweber/microweber package to version 2.0 or later.
For more information about CVE-2023-5244, you can visit the following references: [GitHub Commit](https://github.com/microweber/microweber/commit/1cb846f8f54ff6f5c668f3ae64dd81740a7e8968), [Huntr Bounty](https://huntr.dev/bounties/a3bd58ba-ca59-4cba-85d1-799f73a76470), [NVD](https://nvd.nist.gov/vuln/detail/CVE-2023-5244).