CNNVD-202601-2983 Information

CNNVD ID

CNNVD-202601-2983

CVE-2026-23880

  • CNNVD Published: 2026-01-19

Description (Chinese)

OnboardLite是Hack@UCF开源的一个应用程序。 OnboardLite存在安全漏洞,该漏洞源于存在存储型跨站脚本漏洞,可能在管理员尝试在仪表板中迁移用户的Discord账户时渲染给管理员。

Description (English)

OnboardLite is an application from Hack@UCF open source. OnboardLite has a security loophole, which stems from the existence of a storage cross-site script loophole that may be rendered to the administrator as he tries to move the user’s Discord account on the dashboard.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Hack@UCF

Published

2026-01-19

Last Modified

2026-02-24

References

https://github.com/HackUCF/OnboardLite/commit/1d32081a66f21bcf41df1ecb672490b13f6e429f https://github.com/HackUCF/OnboardLite/security/advisories/GHSA-93w8-83cg-h89g https://access.redhat.com/security/cve/cve-2026-23880

Patch

https://github.com/HackUCF/OnboardLite/commit/1d32081a66f21bcf41df1ecb672490b13f6e429f

Share on: