CVE-2023-34796 Information

Description

Cross site scripting (XSS) vulnerabiliy in dmarcts-report-viewer dashboard versions 1.1 and thru commit 8a1d882b4c481a05e296e9b38a7961e912146a0f allows unauthenticated attackers to execute arbitrary code via the org_name or domain values.

Reference

https://xmit.xyz/security/dmarcd-for-death/ https://github.com/techsneeze/dmarcts-report-viewer/pull/88

Share on: