CVE-2023-38758 Information

Description

Cross Site Scripting vulnerability in wger Project wger Workout Manager v.2.2.0a3 allows a remote attacker to gain privileges via the license_author field in the add-ingredient function in the templates/ingredients/view.html models/ingredients.py and views/ingredients.py components.

Reference

https://github.com/0x72303074/CVE-Disclosures https://wger.de

Share on: