CVE-2023-5319: Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq
Published Sep 30, 2023
·Updated
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.18.
Affected Software
2 affected componentsFixes available
composer/thorsten/phpmyfaq<3.1.18
3.1.18
PhpMyFaq phpmyfaq<3.1.18
Remediation
Event History
Sep 30, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Advisory Published
03:31 AM
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2023-5319.
2
What is the title of this vulnerability?
The title of this vulnerability is Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.18.
3
What is the severity of CVE-2023-5319?
The severity of CVE-2023-5319 is high with a CVSS score of 8.3.
4
How is the vulnerability CVE-2023-5319 exploited?
The vulnerability CVE-2023-5319 is exploited through stored cross-site scripting (XSS) attacks.
5
How can I fix the vulnerability CVE-2023-5319?
To fix the vulnerability CVE-2023-5319, update the thorsten/phpmyfaq package to version 3.1.18 or later.