First published: Sat Sep 30 2023(Updated: )
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.18.
Credit: security@huntr.dev security@huntr.dev security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
composer/thorsten/phpmyfaq | <3.1.18 | 3.1.18 |
Phpmyfaq Phpmyfaq | <3.1.18 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-5317 is medium with a CVSS score of 6.3.
CVE-2023-5317 affects the thorsten/phpmyfaq repository prior to version 3.1.18.
The remedy for CVE-2023-5317 is to update the thorsten/phpmyfaq package to version 3.1.18.
CVE-2023-5317 is classified under CWE-79 (Cross-Site Scripting).
More information about CVE-2023-5317 can be found at the following references: [https://github.com/thorsten/phpmyfaq/commit/ec551bdf1566ede1e55f289888c446f877ad9a83](https://github.com/thorsten/phpmyfaq/commit/ec551bdf1566ede1e55f289888c446f877ad9a83), [https://huntr.dev/bounties/5e146e7c-60c7-498b-9ffe-fd4cb4ca8c54](https://huntr.dev/bounties/5e146e7c-60c7-498b-9ffe-fd4cb4ca8c54), [https://nvd.nist.gov/vuln/detail/CVE-2023-5317](https://nvd.nist.gov/vuln/detail/CVE-2023-5317).