First published: Sat Sep 30 2023(Updated: )
Use of Hard-coded Credentials in GitHub repository microweber/microweber 1.3.4 and prior. A patch is available and anticipated to be part of version 2.0.
Credit: security@huntr.dev security@huntr.dev security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
composer/microweber/microweber | <=1.3.4 | |
Microweber Microweber | <2.0 | |
<2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-5318.
The severity of CVE-2023-5318 is high with a score of 7.5.
The affected software versions are microweber/microweber prior to 2.0 and microweber/microweber 1.3.4 and prior.
Yes, a patch is available and anticipated to be part of version 2.0.
You can find more information about CVE-2023-5318 at the following references: [link 1](https://github.com/microweber/microweber/commit/c48b34dfd6cae7a55b452280d692dc62512574b0), [link 2](https://huntr.dev/bounties/17826bdd-8136-48ae-afb9-af627cb6fd5d), [link 3](https://nvd.nist.gov/vuln/detail/CVE-2023-5318).