Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-1613 | Craft is a CMS for creating custom digital experiences on the web. A malformed RSS feed can deliver an XSS payload. This issue was patched in version 4.4.6. |
Github GHSA |
GHSA-qpgm-gjgf-8c2x | Craft CMS XSS in RSS widget feed |
Tue, 14 Jan 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-01-14T18:21:23.065Z
Reserved: 2023-05-17T22:25:50.699Z
Link: CVE-2023-33195
Updated: 2024-08-02T15:39:35.713Z
Status : Modified
Published: 2023-05-27T04:15:25.767
Modified: 2024-11-21T08:05:05.987
Link: CVE-2023-33195
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA