Cross-site Scripting (XSS) - Stored in thorsten/phpmyfaq
CVE-2023-4007
8.8HIGH
What is CVE-2023-4007?
The stored Cross-site Scripting vulnerability in PHPMyFAQ prior to version 3.1.16 allows attackers to inject malicious scripts through input fields. This may lead to unauthorized actions being performed on behalf of users, compromising the integrity of their interactions with the affected application. It is crucial for users to update their installations to mitigate this risk.
Affected Version(s)
thorsten/phpmyfaq < 3.1.16
