Cross-site Scripting (XSS) - Stored in outline/outline
CVE-2023-3532
8.5HIGH
What is CVE-2023-3532?
A stored cross-site scripting (XSS) vulnerability was identified in Outline, specifically affecting versions prior to 0.70.1. This vulnerability can allow attackers to inject malicious scripts into content that is viewed by other users. By exploiting this flaw, an attacker could potentially execute arbitrary scripts in the context of the victim's session, leading to unauthorized actions or exposure of sensitive information. Users are strongly encouraged to update to the latest version to safeguard against potential attacks.
Affected Version(s)
outline/outline < 0.70.1
