CVE-2023-53155: XSS
Published Jul 25, 2025
·Updated
goform/formTest in EmbedThis GoAhead 2.5 allows HTML injection via the name parameter.
Affected Software
1 affected component
Embedthis GoAhead
Event History
Jul 25, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-53155?
CVE-2023-53155 is classified as a medium severity vulnerability, primarily due to its potential for HTML injection.
2
How do I fix CVE-2023-53155?
To fix CVE-2023-53155, validate and sanitize the name parameter input to prevent HTML injection.
3
What software is affected by CVE-2023-53155?
CVE-2023-53155 affects the EmbedThis GoAhead version 2.5.
4
Can CVE-2023-53155 lead to remote code execution?
CVE-2023-53155 does not directly lead to remote code execution, but it can allow for HTML injection, which may open up additional attack vectors.
5
What are the potential impacts of CVE-2023-53155?
The potential impacts of CVE-2023-53155 include the ability for an attacker to inject malicious HTML, leading to phishing attacks or the execution of unauthorized scripts in the browser.