CNNVD-202508-3000 Information

CNNVD ID

CNNVD-202508-3000

CVE-2023-47799

  • CNNVD Published: 2025-08-25

Description (Chinese)

Mahara是Mahara的一个基于Web的免费开源电子档案袋管理系统。 Mahara 22.10.4之前版本和23.x 23.04.4之前版本存在安全漏洞,该漏洞源于HTML批量导出功能未清除缓存,可能导致信息泄露。

Description (English)

Mahara is a free, open-source electronic archive bag management system based on Web in Mahara. There is a security loophole in the previous version of Mahara 22.10.4 and the previous version of 23.x 23.04.4, which stems from the fact that the volume export function of HTML does not remove the cache, which may lead to the disclosure of information.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Mahara

Published

2025-08-25

Last Modified

2026-02-24

References

https://mahara.org/interaction/forum/topic.php?id=9353 https://git.mahara.org/catalyst-security/mahara-security/-/issues/2 https://nvd.nist.gov/vuln/detail/CVE-2023-47799

Patch

https://mahara.org/interaction/forum/topic.php?id=9353

Share on: