CVE-2023-33196 Information

Description

Craft is a CMS for creating custom digital experiences. Cross site scripting (XSS) can be triggered by review volumes. This issue has been fixed in version 4.4.7.

Reference

https://github.com/craftcms/cms/security/advisories/GHSA-cjmm-x9x9-m2w5 https://github.com/craftcms/cms/releases/tag/4.4.7 https://github.com/craftcms/cms/commit/053d7119697e480ff81c5723bb9a33eaa49e0fc7

Share on: