CVE-2023-5320: Cross-site Scripting (XSS) - DOM in thorsten/phpmyfaq
Published Sep 30, 2023
·Updated
Cross-site Scripting (XSS) - DOM in GitHub repository thorsten/phpmyfaq prior to 3.1.18.
Affected Software
2 affected componentsFixes available
composer/thorsten/phpmyfaq<3.1.18
3.1.18
PhpMyFaq phpmyfaq<3.1.18
Remediation
Event History
Sep 30, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Advisory Published
03:31 AM
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-5320.
2
What is the severity of CVE-2023-5320?
The severity of CVE-2023-5320 is critical.
3
What is the affected software for CVE-2023-5320?
The affected software for CVE-2023-5320 is thorsten/phpmyfaq prior to version 3.1.18.
4
How can I fix the Cross-site Scripting (XSS) - DOM vulnerability in GitHub repository thorsten/phpmyfaq?
To fix the Cross-site Scripting (XSS) - DOM vulnerability in GitHub repository thorsten/phpmyfaq, update to version 3.1.18 or later.
5
Where can I find more information about CVE-2023-5320?
More information about CVE-2023-5320 can be found at the following references: [Reference 1](https://github.com/thorsten/phpmyfaq/commit/e92369543959772adcdab4f36c837faa27490346), [Reference 2](https://huntr.dev/bounties/3a2bc18b-5932-4fb5-a01e-24b2b0443b67), [Reference 3](https://nvd.nist.gov/vuln/detail/CVE-2023-5320).