An XSS vulnerability stored in Repox has been identified, which allows a local attacker to store a specially crafted JavaScript payload on the server, due to the lack of proper sanitisation of field elements, allowing the attacker to trigger the malicious payload when the application loads.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: INCIBE

Published: 2023-12-13T10:04:07.091Z

Updated: 2024-08-02T08:35:14.839Z

Reserved: 2023-12-12T08:04:45.812Z

Link: CVE-2023-6720

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-12-13T10:15:11.403

Modified: 2024-11-21T08:44:25.227

Link: CVE-2023-6720

cve-icon Redhat

No data.