CVE-2023-5317: Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.18.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2023-5317?
The severity of CVE-2023-5317 is medium with a CVSS score of 6.3.
How does CVE-2023-5317 affect the software?
CVE-2023-5317 affects the thorsten/phpmyfaq repository prior to version 3.1.18.
What is the remedy for CVE-2023-5317?
The remedy for CVE-2023-5317 is to update the thorsten/phpmyfaq package to version 3.1.18.
What is the CWE classification for CVE-2023-5317?
CVE-2023-5317 is classified under CWE-79 (Cross-Site Scripting).
Where can I find more information about CVE-2023-5317?
More information about CVE-2023-5317 can be found at the following references: [https://github.com/thorsten/phpmyfaq/commit/ec551bdf1566ede1e55f289888c446f877ad9a83](https://github.com/thorsten/phpmyfaq/commit/ec551bdf1566ede1e55f289888c446f877ad9a83), [https://huntr.dev/bounties/5e146e7c-60c7-498b-9ffe-fd4cb4ca8c54](https://huntr.dev/bounties/5e146e7c-60c7-498b-9ffe-fd4cb4ca8c54), [https://nvd.nist.gov/vuln/detail/CVE-2023-5317](https://nvd.nist.gov/vuln/detail/CVE-2023-5317).