Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-53932

Опубликовано: 17 дек. 2025
Источник: debian
EPSS Низкий

Описание

Serendipity 2.4.0 contains a stored cross-site scripting vulnerability that allows authenticated users to inject malicious scripts through blog entry creation. Attackers can craft entries with JavaScript payloads that will execute when other users view the compromised blog post.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
serendipityremovedpackage

EPSS

Процентиль: 7%
0.00026
Низкий

Связанные уязвимости

CVSS3: 5.4
nvd
около 2 месяцев назад

Serendipity 2.4.0 contains a stored cross-site scripting vulnerability that allows authenticated users to inject malicious scripts through blog entry creation. Attackers can craft entries with JavaScript payloads that will execute when other users view the compromised blog post.

CVSS3: 4.6
github
около 2 месяцев назад

Serendipity 2.4.0 contains a stored cross-site scripting vulnerability that allows authenticated users to inject malicious scripts through blog entry creation. Attackers can craft entries with JavaScript payloads that will execute when other users view the compromised blog post.

EPSS

Процентиль: 7%
0.00026
Низкий