CVE-2023-5861: Cross-site Scripting (XSS) - Stored in microweber/microweber
Published Oct 31, 2023
·Updated
Cross-site Scripting (XSS) - Stored in GitHub repository microweber/microweber prior to 2.0.
Affected Software
2 affected componentsFixes available
composer/microweber/microweber<2.0.0
2.0.0
Microweber Microweber<2.0.0
Remediation
Event History
Oct 31, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Advisory Published
03:31 AM
Frequently Asked Questions
1
What is CVE-2023-5861?
CVE-2023-5861 refers to a Cross-site Scripting (XSS) vulnerability that is stored in the microweber/microweber GitHub repository.
2
How severe is CVE-2023-5861?
CVE-2023-5861 has a severity keyword of 'medium' and a severity value of 6.4.
3
What is the affected software for CVE-2023-5861?
The affected software for CVE-2023-5861 is the microweber/microweber package with a version up to, but not including, 2.0.0.
4
How can I fix CVE-2023-5861?
To fix CVE-2023-5861, you should update the microweber/microweber package to version 2.0.0 or later.
5
Where can I find more information about CVE-2023-5861?
You can find more information about CVE-2023-5861 on the Huntr, GitHub, and NVD websites using the provided references.