First published: Sat Sep 30 2023(Updated: )
Cross-site Scripting (XSS) - DOM in GitHub repository thorsten/phpmyfaq prior to 3.1.18.
Credit: security@huntr.dev security@huntr.dev security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
composer/thorsten/phpmyfaq | <3.1.18 | 3.1.18 |
Phpmyfaq Phpmyfaq | <3.1.18 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2023-5320.
The severity of CVE-2023-5320 is critical.
The affected software for CVE-2023-5320 is thorsten/phpmyfaq prior to version 3.1.18.
To fix the Cross-site Scripting (XSS) - DOM vulnerability in GitHub repository thorsten/phpmyfaq, update to version 3.1.18 or later.
More information about CVE-2023-5320 can be found at the following references: [Reference 1](https://github.com/thorsten/phpmyfaq/commit/e92369543959772adcdab4f36c837faa27490346), [Reference 2](https://huntr.dev/bounties/3a2bc18b-5932-4fb5-a01e-24b2b0443b67), [Reference 3](https://nvd.nist.gov/vuln/detail/CVE-2023-5320).