Количество 2
Количество 2
CVE-2023-23927
Craft is a platform for creating digital experiences. When you insert a payload inside a label name or instruction of an entry type, an cross-site scripting (XSS) happens in the quick post widget on the admin dashboard. This issue has been fixed in version 4.3.7.
GHSA-qcrj-6ffc-v7hq
Craft CMS Stored Cross-site Scripting Injection Vulnerability
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-23927 Craft is a platform for creating digital experiences. When you insert a payload inside a label name or instruction of an entry type, an cross-site scripting (XSS) happens in the quick post widget on the admin dashboard. This issue has been fixed in version 4.3.7. | CVSS3: 6.1 | 10% Низкий | почти 3 года назад | |
GHSA-qcrj-6ffc-v7hq Craft CMS Stored Cross-site Scripting Injection Vulnerability | CVSS3: 6.1 | 10% Низкий | почти 3 года назад |
Уязвимостей на страницу