Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2023-23927

Craft is a platform for creating digital experiences. When you insert a payload inside a label name or instruction of an entry type, an cross-site scripting (XSS) happens in the quick post widget on the admin dashboard. This issue has been fixed in version 4.3.7.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.108
EPSS Ranking 92.9%
CVSS Severity
CVSS v3 Score 6.1
Products affected by CVE-2023-23927


Contact Us

Shodan ® - All rights reserved