CVE-2023-33196 Information
May 27, 2023
cve
Description
Craft is a CMS for creating custom digital experiences. Cross site scripting (XSS) can be triggered by review volumes. This issue has been fixed in version 4.4.7.
Reference
https://github.com/craftcms/cms/security/advisories/GHSA-cjmm-x9x9-m2w5 https://github.com/craftcms/cms/releases/tag/4.4.7 https://github.com/craftcms/cms/commit/053d7119697e480ff81c5723bb9a33eaa49e0fc7
Share on: